2.1
CVSSv2

CVE-1999-1117

Published: 31/12/1999 Updated: 10/10/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm aix 4.1

ibm aix 4.2

Exploits

source: wwwsecurityfocuscom/bid/455/info There exists a vulnerability in the lquerypv command under AIX By using the '-h' flaq, a user may read any file on the file system in hex format /usr/sbin/lquerypv -h /pathtofilename ...