First published: Thu Jul 01 1999(Updated: )
HP CDE program includes the current directory in root's PATH variable.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
cde | ||
HPE HP-UX | =10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0690 has been classified as a medium severity vulnerability due to its potential for local privilege escalation.
To fix CVE-1999-0690, you should remove the current directory from the root's PATH variable in the system configuration.
The potential impacts of CVE-1999-0690 include unauthorized access and execution of malicious scripts with root privileges.
CVE-1999-0690 affects HP CDE environments running on HP-UX version 10.
There is no specific patch for CVE-1999-0690, but remediation involves modifying the PATH variable.