7.2
CVSSv2

CVE-1999-0960

Published: 20/03/1998 Updated: 09/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

IRIX cdplayer allows local users to create directories in arbitrary locations via a command line option.

Vulnerable Product Search on Vulmon Subscribe to Product

sgi irix 6.3

sgi irix 6.4

sgi irix 6.0.1

sgi irix 6.2

sgi irix 5

sgi irix 6.0

sgi irix 6.1

Exploits

source: wwwsecurityfocuscom/bid/333/info A vulnerability exists in the /usr/bin/X11/cdplayer application as shipped with SGI's IRIX operating system By failing to shed root privileges, and creating arbitrary directories as root, cdplayer allows arbitrary users to gain root on the system The -dbcdir option to cdplayer specifies the dire ...