First published: Tue Jul 13 1999(Updated: )
BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying the target file as the second argument to the snmpmagt program.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bmc Patrol Agent | <=3.2.7 | |
Bmc Patrol Agent | =3.2 | |
Bmc Patrol Agent | =3.2.3 | |
Bmc Patrol Agent | =3.2.5 | |
<=3.2.7 | ||
=3.2 | ||
=3.2.3 | ||
=3.2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1460 is considered a high severity vulnerability due to its potential for local privilege escalation.
To fix CVE-1999-1460, upgrade BMC PATROL SNMP Agent to version 3.2.08 or later.
CVE-1999-1460 affects local users of BMC PATROL SNMP Agent versions before 3.2.08.
The impact of CVE-1999-1460 is that it allows local users to create arbitrary world-writeable files as root.
CVE-1999-1460 cannot be exploited remotely as it requires local access to the affected system.