Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wjg4-7q94-8q6c

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

cfgcon in IBM AIX 5.2 and 5.3 does not properly validate the argument to the "-p" option to swcons, which allows local users in the system group to create or overwrite an arbitrary file, and enable world writability of this file, by using the file's name as the argument.

cfgcon in IBM AIX 5.2 and 5.3 does not properly validate the argument to the "-p" option to swcons, which allows local users in the system group to create or overwrite an arbitrary file, and enable world writability of this file, by using the file's name as the argument.

EPSS

Процентиль: 16%
0.0005
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

cfgcon in IBM AIX 5.2 and 5.3 does not properly validate the argument to the "-p" option to swcons, which allows local users in the system group to create or overwrite an arbitrary file, and enable world writability of this file, by using the file's name as the argument.

EPSS

Процентиль: 16%
0.0005
Низкий