Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-4018

Опубликовано: 11 сент. 2008
Источник: nvd
CVSS2: 7.2
EPSS Низкий

Описание

swcons in bos.rte.console in IBM AIX 5.2.0 through 6.1.1 allows local users in the system group to create or overwrite an arbitrary file, and establish weak permissions and root ownership for this file, via unspecified vectors. NOTE: this can be leveraged to gain privileges. NOTE: this issue exists because of an incomplete fix for CVE-2007-5805.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:ibm:aix:5.2:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:5.3:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:6.1:*:*:*:*:*:*:*

EPSS

Процентиль: 15%
0.00048
Низкий

7.2 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

github
почти 4 года назад

swcons in bos.rte.console in IBM AIX 5.2.0 through 6.1.1 allows local users in the system group to create or overwrite an arbitrary file, and establish weak permissions and root ownership for this file, via unspecified vectors. NOTE: this can be leveraged to gain privileges. NOTE: this issue exists because of an incomplete fix for CVE-2007-5805.

EPSS

Процентиль: 15%
0.00048
Низкий

7.2 High

CVSS2

Дефекты

CWE-264