CVE-1999-0988
UnknownEPSS 0.80%
Last modified
CVE-1999-0988 is a vulnerability of currently unknown severity. UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack.. EPSS estimates a 0.80% chance of exploitation in the next 30 days.
Description
UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sco | Unixware | 2.0 |
| Sco | Unixware | 2.0.3 |
| Sco | Unixware | 2.1 |
| Sco | Unixware | 7.0 |
| Sco | Unixware | 7.0.1 |
| Sco | Unixware | 7.1 |
| Sco | Unixware | 7.1.1 |
| Sco | Unixware | 7.1.16 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-1999-0988?
UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack.
How severe is CVE-1999-0988?
Severity scoring for CVE-1999-0988 is pending analysis. The EPSS model estimates a 0.80% probability of exploitation in the next 30 days.
How do I fix CVE-1999-0988?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 1999
- CVE-1999-0982The Sun Web-Based Enterprise Management (WBEM) installation …
- CVE-1999-0983Whois Internic Lookup program whois.cgi allows remote attack…
- CVE-1999-0984Matt's Whois program whois.cgi allows remote attackers to ex…
- CVE-1999-0985CC Whois program whois.cgi allows remote attackers to execut…
- CVE-1999-0986The ping command in Linux 2.0.3x allows local users to cause…
- CVE-1999-0987Windows NT does not properly download a system policy if the…
- CVE-1999-0989Buffer overflow in Internet Explorer 5 directshow filter (MS…
- CVE-1999-0990Error messages generated by gdm with the VerboseAuth setting…
- CVE-1999-0991Buffer overflow in GoodTech Telnet Server NT allows remote u…
- CVE-1999-0992HP VirtualVault with the PHSS_17692 patch allows unprivilege…
- CVE-1999-0993Modifications to ACLs (Access Control Lists) in Microsoft Ex…
- CVE-1999-0994Windows NT with SYSKEY reuses the keystream that is used for…
Are you affected by CVE-1999-0988?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
