CVE-1999-0043

Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:isc:inn:1.4sec:*:*:*:*:*:*:*
cpe:2.3:a:isc:inn:1.4sec2:*:*:*:*:*:*:*
cpe:2.3:a:isc:inn:1.4unoff3:*:*:*:*:*:*:*
cpe:2.3:a:isc:inn:1.4unoff4:*:*:*:*:*:*:*
cpe:2.3:a:isc:inn:1.5:*:*:*:*:*:*:*
cpe:2.3:a:netscape:news_server:1.1:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:bsdi:bsd_os:2.1:*:*:*:*:*:*:*
cpe:2.3:o:caldera:openlinux:1.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:linux:4.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:h:nec:goah_intrasv:1.1:*:*:*:*:*:*:*
cpe:2.3:h:nec:goah_networksv:1.2:*:*:*:*:*:*:*
cpe:2.3:h:nec:goah_networksv:2.2:*:*:*:*:*:*:*
cpe:2.3:h:nec:goah_networksv:3.1:*:*:*:*:*:*:*

History

01 Aug 2024, 20:35

Type Values Removed Values Added
CWE CWE-78
CVSS v2 : 10.0
v3 : unknown
v2 : 10.0
v3 : 9.8

Information

Published : 1996-12-04 05:00

Updated : 2024-08-01 20:35


NVD link : CVE-1999-0043

Mitre link : CVE-1999-0043

CVE.ORG link : CVE-1999-0043


JSON object : View

Products Affected

nec

  • goah_networksv
  • goah_intrasv

caldera

  • openlinux

redhat

  • linux

netscape

  • news_server

isc

  • inn

bsdi

  • bsd_os
CWE
NVD-CWE-Other CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')