7.2
CVSSv2

CVE-1999-1286

Published: 09/05/1997 Updated: 19/12/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

addnetpr in SGI IRIX 6.2 and previous versions allows local users to modify arbitrary files and possibly gain root access via a symlink attack on a temporary file.

Vulnerable Product Search on Vulmon Subscribe to Product

sgi irix 5.3

sgi irix

Exploits

source: wwwsecurityfocuscom/bid/330/info SGI's IRIX 5x and 6x operating system include a utility called /usr/lib/netaddpr This program can be used by privledged users to add network printing devices to the system A race condition exists in this program that could allow any "privledged" user to obtain root access The netaddpr program ...