CVE-1999-1485

IRIX 6.5-6.5.2 - Unauthenticated Information Disclosure and Denial of Service via nsd Virtual Filesystem

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-1485. PoCs published by Jefferson Ogata.

AI-analyzed exploit summary This exploit leverages a vulnerability in SGI IRIX 6.5's nsd service, which exports a virtual filesystem via NFS without proper access controls. The PoC mounts the filesystem remotely to access sensitive information like NIS maps and shadow password files.

Description

nsd in IRIX 6.5 through 6.5.2 exports a virtual filesystem on a UDP port, which allows remote attackers to view files and cause a possible denial of service by mounting the nsd virtual file system.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Jefferson Ogata · cremoteirix
https://www.exploit-db.com/exploits/19316

This exploit leverages a vulnerability in SGI IRIX 6.5's nsd service, which exports a virtual filesystem via NFS without proper access controls. The PoC mounts the filesystem remotely to access sensitive information like NIS maps and shadow password files.

Classification
Working Poc 90%
Attack Type
Info Leak
Complexity
Moderate
Reliability
Reliable
Target: SGI IRIX 6.5.x (nsd service)
No auth needed
Prerequisites: Network access to the target system · NFS port (typically 1024-1029) open and accessible
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/2246
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/412
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=92818552106912&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/8564
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/2247

Scores

EPSS 0.0359
EPSS Percentile 88.0%

Details

Status published
Products (3)
sgi/irix 6.5
sgi/irix 6.5.1
sgi/irix 6.5.2
Published May 31, 1999
Tracked Since Feb 18, 2026