First published: Wed Apr 14 1999(Updated: )
Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RealNetworks RealServer | =6.0.3.353 | |
=6.0.3.353 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1369 has a severity level that allows local users to gain unauthorized privileges due to password exposure.
To fix CVE-1999-1369, you should secure the rmserver.cfg file by changing its permissions to restrict access.
CVE-1999-1369 affects Real Media RealServer version 6.0.3.353.
The implications of CVE-1999-1369 include potential local privilege escalation by unauthorized users.
CVE-1999-1369 primarily involves local exploitation, as it requires access to the machine where RealServer is installed.