Vulnerability Description
Excite for Web Servers (EWS) 1.1 installs the Architext.conf authentication file with world-writeable permissions, which allows local users to gain access to Excite accounts by modifying the file.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Excite | Ews | 1.1 |
References
- http://marc.info/?l=bugtraq&m=91248445931140&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/1417
- http://marc.info/?l=bugtraq&m=91248445931140&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/1417
FAQ
What is CVE-1999-1071?
CVE-1999-1071 is a vulnerability with a CVSS score of 7.2 (HIGH). Excite for Web Servers (EWS) 1.1 installs the Architext.conf authentication file with world-writeable permissions, which allows local users to gain access to Excite accounts by modifying the file.
How severe is CVE-1999-1071?
CVE-1999-1071 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1071?
Check the references section above for vendor advisories and patch information. Affected products include: Excite Ews.