Executive Summary

Informations
Name CVE-1999-1133 First vendor Publication 1997-09-01
Vendor Cve Last vendor Modification 2017-12-19

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:L/Au:N/C:P/I:P/A:P)
Cvss Base Score 4.6 Attack Range Local
Cvss Impact Score 6.4 Attack Complexity Low
Cvss Expoit Score 3.9 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, (2) vuepad, (3) dtfile, or (4) dtpad, which do not authenticate users.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-1133

CPE : Common Platform Enumeration

TypeDescriptionCount
Os 2

Open Source Vulnerability Database (OSVDB)

Id Description
8215 HP-UX vuefile No Authentication Privilege Escalation

The vuefile program in HP-UX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The problem is that the program does not check the authentication, which could allow a user who runs the program while su'd to another account or spawned to a remote X server inadvertently allow access to malicious users.
8214 HP-UX dtpad No Authentication Privilege Escalation

The dtpad program in HP-UX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The problem is that the program does not check the authentication, which could allow a user who runs the program while su'd to another account or spawned to a remote X server inadvertently allow access to malicious users.
8213 HP-UX dtfile No Authentication Privilege Escalation

The dtfile program in HP-UX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The problem is that the program does not check the authentication, which could allow a user who runs the program while su'd to another account or spawned to a remote X server inadvertently allow access to malicious users.
8212 HP-UX vuepad No Authentication Privilege Escalation

The vuepad program in HP-UX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The problem is that the program does not check the authentication, which could allow a user who runs the program while su'd to another account or spawned to a remote X server inadvertently allow access to malicious users.

Sources (Detail)

Source Url
HP http://marc.info/?l=bugtraq&m=87602880019776&w=2
XF https://exchange.xforce.ibmcloud.com/vulnerabilities/499

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
Date Informations
2021-05-04 12:00:59
  • Multiple Updates
2021-04-22 01:01:13
  • Multiple Updates
2020-05-23 00:14:13
  • Multiple Updates
2017-12-19 09:22:02
  • Multiple Updates
2016-10-18 12:00:47
  • Multiple Updates
2013-05-11 11:57:55
  • Multiple Updates