s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

CVE-1999-1318 high

📛 Threat Title

CVE-1999-1318

Category: vulnerability Published: Source updated: First seen: Last updated: Source: NVD Recent CVEs

Description

/usr/5bin/su in SunOS 4.1.3 and earlier uses a search path that includes the current working directory (.), which allows local users to gain privileges via Trojan horse programs.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (3)

Remediations (10)

  • web:docs.qualys.com

    Qualys Patch Management and Mitigation provides tools for managing, deploying, and mitigating patches across various operating systems to enhance system security.

  • web:github.com

    Patch for Windows 9x to fix CPU issues. Contribute to JHRobotics/patcher9x development by creating an account on GitHub.

  • web:nvd.nist.gov

    Vulnerabilities All vulnerabilities in the NVD have been assigned a CVE identifier and thus, abide by the definition below. CVE defines a vulnerability as: "A weakness in the computational logic (e.g., code) found in software and hardware components that, when exploited, results in a negative impact to confidentiality, integrity, or availability. Mitigation of the vulnerabilities in this ...

  • web:portal.msrc.microsoft.com

    The Security Update Guide provides information on the latest Microsoft security updates, helping users understand and address potential vulnerabilities effectively.

  • web:support.servicenow.com

    This document lists all the released Store applications and schema changes for Vulnerability Response and Configuration Compliance. Vulnerability Response and Configuration Compliance Compatibility Matrix

  • web:www.cisa.gov

    For the benefit of the cybersecurity community and network defenders—and to help every organization better manage vulnerabilities and keep pace with threat activity—CISA maintains the authoritative source of vulnerabilities that have been exploited in the wild. Organizations should use the KEV catalog as an input to their vulnerability management prioritization framework.

  • web:www.cve.org

    At cve .org, we provide the authoritative reference method for publicly known information-security vulnerabilities and exposures

  • web:www.forbes.com

    Mitigation Measures To Take If Patching Isn't Possible Assuming a patch can't be promptly applied, what can be done to mitigate risk? There are several important measures to keep in mind:

  • web:www.tenable.com

    What is patch management? At its core, patch management is the formal process your organization uses to identify, acquire, test, and deploy software updates, or "patches," to your IT assets. Vendors release patches for several reasons: Fix software bugs Improve performance Add new features Fix vulnerabilities that attackers could otherwise exploit A patch can be a minor, single fix (a "hotfix ...

  • web:www.virustotal.com

    VirusTotal is a platform for scanning files and URLs for viruses, malware, and other threats using multiple antivirus engines.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.