Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-1999-0080

EPSS 1.46% · P81
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-1999-0080

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
WU-FTPD 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
WU-FTPD 存在安全漏洞,该漏洞源于配置文件pathnames.h的错误配置,一些Wu-ftpd 2.4.1和更早的二进制发行版本允许攻击者有个FTP账号即可获得root访问权限。由于pathnames.h错误的设置了_PATH_EXECPATH为/bin,这个路径对应匿名用户是相对于~ftp,但是对于其它FTP账号是对应于/,就是实际的/bin。如果Wu-ftpd的SITE EXEC功能打开的话,用户就可能以root用户的权限运行系统命令,比如执行/bin/sh。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-1999-0080

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-1999-0080

登录查看更多情报信息。

Same Patch Batch · n/a · 1999-09-29 · 320 CVEs total

CVE-1999-0312HP ypbind NIS 安全漏洞
CVE-1999-0326HP-UX mediainit程序漏洞
CVE-1999-0325HP-UX vhe_u_mnt创建根文件漏洞
CVE-1999-0324HP-UX ppl权限许可和访问控制漏洞
CVE-1999-0321Solaris kcms_configure 安全漏洞
CVE-1999-0320SunOS rpc.cmsd漏洞
CVE-1999-0316Linux splitvt 安全漏洞
CVE-1999-0315Solaris fdformat命令行缓冲区溢出漏洞
CVE-1999-0314IRIX ioconfig漏洞
CVE-1999-0313IRIX disk_bandwidth漏洞
CVE-1999-0305BSD 系统配置控件伪造连接漏洞
CVE-1999-0300Solaris NIS+ nis_cachemgr恶意服务器添加漏洞
CVE-1999-0301SunOS/Solaris ps缓冲区溢出漏洞
CVE-1999-0302SunOS/Solaris FTP客户端命令任意执行漏洞
CVE-1999-0303BNU UUCP安全漏洞
CVE-1999-0309HP-UX vgdisplay程序权限许可和访问控制漏洞
CVE-1999-0311HP-UX fpkg2swpk权限许可和访问控制漏洞
CVE-1999-0310HP-UX SSH 安全漏洞
CVE-1999-0327SGI syserr文件损毁漏洞
CVE-1999-0308HP-UX gwind信息修改漏洞

Showing top 20 of 320 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-1999-0080

No comments yet


Leave a comment