Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-1999-1554 | First vendor Publication | 1990-10-31 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:L/AC:L/Au:N/C:P/I:N/A:N) | |||
---|---|---|---|
Cvss Base Score | 2.1 | Attack Range | Local |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 3.9 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
/usr/sbin/Mail on SGI IRIX 3.3 and 3.3.1 does not properly set the group ID to the group ID of the user who started Mail, which allows local users to read the mail of other users. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-1554 |
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Os | 2 |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
8567 | IRIX /usr/sbin/Mail Arbitrary Mail Spool Access IRIX contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when usr/sbin/Mail fails to reset its group ID to the group ID of the caller, which will allow a malicious user to read the mail of other users, as well as that of the root user, resulting in a loss of confidentiality. |
Sources (Detail)
Source | Url |
---|
Alert History
Date | Informations |
---|---|
2024-11-28 23:25:10 |
|
2024-11-28 12:04:03 |
|
2021-05-04 12:01:05 |
|
2021-04-22 01:01:18 |
|
2020-05-23 00:14:19 |
|
2013-05-11 11:59:09 |
|