First published: Sun Mar 01 1998(Updated: )
A Unix account has a default, null, blank, or missing password.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HPE HP-UX | =10.20 | |
HPE HP-UX | =11 | |
redhat linux | =6.0 | |
Oracle Solaris SPARC | =2.6 | |
Sun SunOS | =5.5.1 | |
Sun SunOS | =5.7 | |
Sun SunOS | =5.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0502 is considered a critical vulnerability due to the potential for unauthorized access on systems with default or blank passwords.
To fix CVE-1999-0502, ensure that all Unix accounts have strong, non-blank passwords set and implement policies for regular password updates.
CVE-1999-0502 affects various versions of HP-UX, Red Hat Linux, and SunOS as listed in the vulnerability details.
Yes, CVE-1999-0502 can be exploited remotely if attackers have access to the login prompt of the affected systems.
Exploitation of CVE-1999-0502 can lead to complete system compromise, allowing attackers to execute arbitrary commands and access sensitive data.