Junglewise Threat Intelligence

CVE-1999-1059: AT&T TCP/IP 4.0 remote command execution in rexecd

CVE-1999-1059 · Severity: critical · CVSS 10 · Published 1992-02-25

Executive brief

A critical vulnerability exists in the remote execution service of AT&T TCP/IP 4.0 for SVR4 systems. This flaw allows an unauthorized person to remotely run any command on the affected system. An attacker could take full control of the server, access sensitive data, or disrupt operations entirely.

Technical details

The rexec daemon (rexecd) in AT&T TCP/IP 4.0 for various SVR4 systems contains a vulnerability that facilitates remote command execution. The flaw resides in the daemon's handling of requests, allowing an unauthenticated remote attacker to execute arbitrary system commands with the privileges of the daemon. This is a network-based attack that requires no user interaction. Successful exploitation results in a complete compromise of confidentiality, integrity, and availability. A patch was historically referenced in CERT advisory CA-1992-04.

Affected products

  • AT&T TCP/IP 4.0 for SVR4 4.0

Timeline

  • 1992-02-25: disclosed: Initial disclosure date recorded by NVD
  • 1992-02-25: advisory: CERT Advisory CA-1992-04 published

References

Related threats