First published: Thu Jun 11 1998(Updated: )
(1) acledit and (2) aclput in AIX 4.3 allow local users to create or modify files via a symlink attack.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =4.3 | |
=4.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1480 is considered a medium severity vulnerability due to its potential for local file manipulation through symlink attacks.
To fix CVE-1999-1480, users should avoid using the vulnerable commands or apply any relevant patches provided by IBM for AIX 4.3.
CVE-1999-1480 affects local users of IBM AIX 4.3, specifically those who have access to the acledit and aclput commands.
CVE-1999-1480 involves a symlink attack that allows local users to create or modify files.
CVE-1999-1480 is classified as a local vulnerability since it requires local user access to exploit.