CVE-1999-1138
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/09/1993
Last modified:
03/04/2025
Description
SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the asg user, which allows other users to gain access to those accounts since /tmp and /usr/tmp are world-writable.
Impact
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:sco:open_desktop:1.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:sco:open_desktop:2.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:sco:open_desktop:3.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:sco:open_desktop_lite:3.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:sco:openserver:3.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:sco:unix:system_v386_3.2_operating_system:*:*:*:*:*:*:* | ||
cpe:2.3:o:sco:unix:system_v386_3.2_operating_system_2.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:sco:unix:system_v386_3.2_operating_system_4.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:sco:unix:system_v386_3.2_operating_system_4.x:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page