CVE-1999-0051 describes a local privilege escalation vulnerability in FLEXlm LicenseManager versions 4.0 to 5.0, specifically impacting SGI IRIX, Sun, and Globetrotter products. Attackers can exploit this flaw to achieve arbitrary file creation and program execution. With a CVSS score of 7.2 (High), this vulnerability allows an unauthenticated local attacker to gain full control over the affected system. While not listed on CISA's KEV, exploit code is publicly available on ExploitDB, demonstrating local privilege escalation in various IRIX and Solaris versions.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.0CPE matchmatch criteria | cpe:2.3:a:globetrotter:flexlm:4.0:*:*:*:*:*:*:* | ||
4.1CPE matchmatch criteria | cpe:2.3:a:globetrotter:flexlm:4.1:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:a:globetrotter:flexlm:5.0:*:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:a:sgi:license_oeo:3.0:*:*:*:*:*:*:* | ||
3.1CPE matchmatch criteria | cpe:2.3:a:sgi:license_oeo:3.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.