| ID | CVE-2004-1329 | ||||||
| Sažetak | Untrusted execution path vulnerability in the diag commands (1) lsmcode, (2) diag_exec, (3) invscout, and (4) invscoutd in AIX 5.1 through 5.3 allows local users to execute arbitrary programs by modifying the DIAGNOSTICS environment variable to point to a malicious Dctrl program. | ||||||
| Reference |
|
||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:L/AC:L/Au:N/C:C/I:C/A:C | ||||||
| Zadnje važnije ažuriranje | 19-10-2018 - 15:30 | ||||||
| Objavljeno | 20-12-2004 - 05:00 |

