CVE-1999-1072: Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the worl

Published n/a Updated 2026-08-21T04:30:41.277Z

Summary

Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the world-readable Architext.conf authentication file and replaying the encrypted password in an HTTP request to AT-generated.cgi or AT-admin.cgi.

Severity

UNKNOWN

Source Attribution

Source: NVD · Updated: 2026-08-21T04:30:41.277Z · Confidence: high

Impact

Based on CVSS vector: n/a — assess confidentiality, integrity, and availability impact via the official vector documentation.

Affected Software

Fix

Upgrade affected software to the fixed version identified above. Apply vendor patches and monitor advisories before exposed systems go unpatched.

References