Vulnerability Description
In SunOS or Solaris, a remote user could connect from an FTP server's data port to an rlogin server on a host that trusts the FTP server, allowing remote command execution.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sun | Solaris | 2.4 |
| Sun | Sunos | 4.1.3u1 |
References
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/156
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/156
FAQ
What is CVE-1999-0185?
CVE-1999-0185 is a vulnerability with a CVSS score of 7.5 (HIGH). In SunOS or Solaris, a remote user could connect from an FTP server's data port to an rlogin server on a host that trusts the FTP server, allowing remote command execution.
How severe is CVE-1999-0185?
CVE-1999-0185 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-0185?
Check the references section above for vendor advisories and patch information. Affected products include: Sun Solaris, Sun Sunos.