First published: Thu Feb 25 1999(Updated: )
Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Cobalt RaQ |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0408 is considered a high severity vulnerability due to the exposure of sensitive command history files.
To fix CVE-1999-0408, configure appropriate permissions on files like .bash_history to restrict access.
CVE-1999-0408 affects Cobalt RaQ microservers including versions of Sun's Cobalt RaQ.
CVE-1999-0408 can expose sensitive command history, potentially revealing user credentials and system commands.
While CVE-1999-0408 is an older vulnerability, it remains relevant for systems still using vulnerable versions of Cobalt RaQ.