Summary
The remote sendmail server, according to its version number, allows local users to write to a file and gain group permissions via a .forward or :include: file.
Solution
Install sendmail newer than 8.8.4 or install a vendor supplied patch.
Severity
Classification
-
CVE CVE-1999-0129 -
CVSS Base Score: 4.6
AV:L/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities