Vulnerability Details CVE-1999-1580
SunOS sendmail 5.59 through 5.65 uses popen to process a forwarding host argument, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable and passing crafted values to the -oR option.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.4%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-1999-1580
-
cpe:2.3:a:sendmail:sendmail:5.59
-
cpe:2.3:a:sendmail:sendmail:5.61
-
cpe:2.3:a:sendmail:sendmail:5.65
-
cpe:2.3:o:sun:sunos:4.1.1
-
cpe:2.3:o:sun:sunos:4.1.2
-
cpe:2.3:o:sun:sunos:4.1.3
-
cpe:2.3:o:sun:sunos:4.1.3c
-
cpe:2.3:o:sun:sunos:4.1.3u1
-
cpe:2.3:o:sun:sunos:4.1.4
-
cpe:2.3:o:sun:sunos:4.1.4jl