Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-1999-0813

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Cfingerd 存在安全漏洞,启用ALLOW_EXECUTION的Cfingerd执行用户程序时不能正确处理权限,本地用户可以借助此漏洞获得根权限。

AI Predicted 7.8 Difficulty: Easy EPSS 0.47% · P39
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-1999-0813

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Cfingerd with ALLOW_EXECUTION enabled does not properly drop privileges when it executes a program on behalf of the user, allowing local users to gain root privileges.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Cfingerd 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cfingerd 存在安全漏洞,启用ALLOW_EXECUTION的Cfingerd执行用户程序时不能正确处理权限,本地用户可以借助此漏洞获得根权限。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-1999-0813

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-1999-0813

登录查看更多情报信息。

Vendor Advisories for CVE-1999-0813 (1)

Same Patch Batch · n/a · 2000-04-18 · 31 CVEs total

CVE-2000-0053 Microsoft CIS IMAP缓冲区溢出漏洞
CVE-2000-0183 IrcII DCC Chat缓冲区溢出漏洞
CVE-2000-0159 HP Ignite-UX加密问题漏洞
CVE-2000-0144 Axis 700认证绕过漏洞
CVE-2000-0140 Internet Anywhere Mail服务器链接过载漏洞
CVE-2000-0131 War-FTPd 1.6x CWD/MKD DoS漏洞
CVE-2000-0107 Debian GNU/Linux 2.1 apcd符号链接漏洞
CVE-2000-0100 SMS远程控制项目权限提升漏洞
CVE-2000-0099 UnixWare ppptalk缓冲区溢出漏洞
CVE-2000-0095 HP Path MTU Discovery DoS 漏洞
CVE-2000-0091 Inter7 vpopmail (vchkpw)缓冲区溢出漏洞
CVE-2000-0083 HP asecure audio.sec漏洞
CVE-2000-0073 微软富文本格式(RTF)阅读器缓冲区溢出漏洞
CVE-2000-0062 Zope DTML编辑漏洞
CVE-2000-0057 Allaire ColdFusion 4.0x CFCACHE功能泄露信息漏洞
CVE-1999-0676 Solaris sdtcm_convert File Creation漏洞
CVE-2000-0052 多个Linux供应商userhelper/PAM路径漏洞
CVE-2000-0044 WarFTPd多个Macro漏洞
CVE-1999-1008 FreeBSD 和Linux Mandrake 'xsoldier'缓冲区溢出漏洞
CVE-1999-0961 HPUX sysdiag权限许可和访问控制漏洞

Showing top 20 of 31 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-1999-0813

No comments yet


Leave a comment