CVE-1999-0690

HP CDE - Unauthenticated Remote Code Execution via PATH Variable Manipulation

Title source: llm
STIX 2.1

Description

HP CDE program includes the current directory in root's PATH variable.

References (2)

Core 2
Core References
Various Sources vendor-advisory x_refsource_hp
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9907-100
Vendor Advisory third-party-advisory government-resource x_refsource_ciac
http://www.ciac.org/ciac/bulletins/j-053.shtml

Scores

EPSS 0.0005
EPSS Percentile 16.5%

Details

Status published
Products (2)
cde/cde
hp/hp-ux 10
Published Jul 01, 1999
Tracked Since Feb 18, 2026