Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2006-4416 - CERT CVE
CVE-2006-4416
ID
CVE-2006-4416
Sažetak
Untrusted search path vulnerability in the mkvg command in IBM AIX 5.2 and 5.3 allows local users to gain privileges by modifying the path to point to a malicious (1) chdev, (2) mkboot, (3) varyonvg, or (4) varyoffvg program.
Reference
ftp://aix.software.ibm.com/aix/efixes/security/README
http://secunia.com/advisories/21620
http://secunia.com/advisories/22106
http://securitytracker.com/id?1016920
http://www.securityfocus.com/bid/19708
http://www.securityfocus.com/bid/20197
http://www.vupen.com/english/advisories/2006/3389
http://www.vupen.com/english/advisories/2006/3770
http://www-1.ibm.com/support/docview.wss?uid=isg1IY88699
http://www-1.ibm.com/support/docview.wss?uid=isg1IY88722
http://www-1.ibm.com/support/docview.wss?uid=isg1IY88737
https://exchange.xforce.ibmcloud.com/vulnerabilities/29165
CVSS
Base:
7.2
Impact:
10.0
Exploitability:
3.9
Pristup
Vektor
Složenost
Autentikacija
LOCAL
LOW
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
COMPLETE
COMPLETE
COMPLETE
CVSS vektor
AV:L/AC:L/Au:N/C:C/I:C/A:C
Zadnje važnije ažuriranje
20-07-2017 - 01:33
Objavljeno
28-08-2006 - 20:04