CVE-1999-0092

AIX Portmir - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-1999-0092. PoCs published by BM ERS Team, HORKimhab.

AI-analyzed exploit summary This exploit targets a buffer overflow in the AIX portmir command (CVE-1999-0092) to achieve local privilege escalation. It uses a custom shellcode and NOP sled to overwrite the return address and execute arbitrary code with root privileges.

Description

Various vulnerabilities in the AIX portmir command allows local users to obtain root access.

Exploits (2)

exploitdb WORKING POC VERIFIED
by BM ERS Team · clocalaix
https://www.exploit-db.com/exploits/19306

This exploit targets a buffer overflow in the AIX portmir command (CVE-1999-0092) to achieve local privilege escalation. It uses a custom shellcode and NOP sled to overwrite the return address and execute arbitrary code with root privileges.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: AIX portmir (versions 4.2, 4.3, 4.3.x)
No auth needed
Prerequisites: Access to the target AIX system · Ability to execute the exploit binary
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
github STUB
by HORKimhab · shellpoc
https://github.com/HORKimhab/poc-cve-collection/tree/main/1999/0xxx/CVE-1999-0092.md

The repository contains a placeholder markdown file for CVE-1999-0092, describing a local privilege escalation vulnerability in AIX's portmir command. No actual exploit code, technical details, or proof-of-concept implementation is provided.

Classification
Stub 95%
Attack Type
Lpe
Complexity
Unknown
Reliability
Theoretical
Target: AIX (portmir command)
Auth required
Prerequisites: local access to a vulnerable AIX system
mistral-large-3 · analyzed Jul 14, 2026 Full analysis →

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry x_refsource_misc
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0092

Scores

EPSS 0.0079
EPSS Percentile 52.6%

Details

Status published
Products (1)
ibm/aix 4.2.1
Published Oct 29, 1997
Tracked Since Feb 18, 2026