PT-1992-1010 · Hewlett Packard · Vms

Published

1992-11-17

·

Updated

2009-10-31

·

CVE-1999-1395

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions VMS versions 5.0 through 5.4-2
Description A local privilege escalation issue exists in the Monitor utility, specifically in the SYS$SHARE:SPISHR.EXE file. This allows local users to gain elevated privileges.
Recommendations For VMS versions 5.0 through 5.4-2, consider restricting access to the SYS$SHARE:SPISHR.EXE file until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-1999-1395

Affected Products

Vms