Vulnerability Description
dxconsole in DEC OSF/1 3.2C and earlier allows local users to read arbitrary files by specifying the file with the -file parameter.
CVSS Score
4.6
MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Digital | Osf 1 | <= 3.2c |
References
- http://ciac.llnl.gov/ciac/bulletins/g-18.shtmlPatchVendor Advisory
- http://www.cert.org/vendor_bulletins/VB-96.05.decPatchThird Party AdvisoryUS Government Resource
- http://www.iss.net/security_center/static/7138.php
- http://www.tao.ca/fire/bos/0209.html
- http://ciac.llnl.gov/ciac/bulletins/g-18.shtmlPatchVendor Advisory
- http://www.cert.org/vendor_bulletins/VB-96.05.decPatchThird Party AdvisoryUS Government Resource
- http://www.iss.net/security_center/static/7138.php
- http://www.tao.ca/fire/bos/0209.html
FAQ
What is CVE-1999-1103?
CVE-1999-1103 is a vulnerability with a CVSS score of 4.6 (MEDIUM). dxconsole in DEC OSF/1 3.2C and earlier allows local users to read arbitrary files by specifying the file with the -file parameter.
How severe is CVE-1999-1103?
CVE-1999-1103 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1103?
Check the references section above for vendor advisories and patch information. Affected products include: Digital Osf 1.