CVE-1999-1555
Cheyenne InocuLAN Anti-Virus Server <4.0 - Local Privilege Escalation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-1999-1555. PoCs published by Paul Boyer.
AI-analyzed exploit summary This exploit leverages a DLL hijacking vulnerability in Cheyenne Inoculan 4.0 for Windows NT prior to SP2. By replacing the avh32dll.dll file in the shared CHEYUPD$ directory, arbitrary code execution is achieved when the service loads the malicious DLL.
Description
Cheyenne InocuLAN Anti-Virus Server in Inoculan 4.0 before Service Pack 2 creates an update directory with "EVERYONE FULL CONTROL" permissions, which allows local users to cause Inoculan's antivirus update feature to install a Trojan horse dll.
Exploits (1)
This exploit leverages a DLL hijacking vulnerability in Cheyenne Inoculan 4.0 for Windows NT prior to SP2. By replacing the avh32dll.dll file in the shared CHEYUPD$ directory, arbitrary code execution is achieved when the service loads the malicious DLL.