---
id: CVE-1999-0168
title: >-
  The portmapper may act as a proxy and redirect service requests from an
  attacker, making the request appear to come from the local host, possibly
  bypassing authentication that would otherwise have taken place
summary: >-
  The portmapper may act as a proxy and redirect service requests from an
  attacker, making the request appear to come from the local host, possibly
  bypassing authentication that would otherwise have taken place.  For example,
  NFS file syst…
severity: high
cvss: 7.5
cvssVector: 'AV:N/AC:L/Au:N/C:P/I:P/A:P'
published: '1992-06-04'
updated: '2026-06-16'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-1999-0168'
references:
  - url: 'https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0168'
    label: cve@mitre.org
  - url: 'https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0168'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.01774
epssPercentile: 0.77206
ingestedAt: '2026-06-19T03:39:00.704Z'
---

## Overview

The portmapper may act as a proxy and redirect service requests from an attacker, making the request appear to come from the local host, possibly bypassing authentication that would otherwise have taken place.  For example, NFS file systems could be mounted through the portmapper despite export restrictions.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
