4.6
CVSSv2

CVE-1999-0388

Published: 01/01/1999 Updated: 09/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

DataLynx suGuard trusts the PATH environment variable to execute the ps command, allowing local users to execute commands as root.

Vulnerable Product Search on Vulmon Subscribe to Product

datalynx suguard 1.0

Exploits

#source: wwwsecurityfocuscom/bid/186/info # #A vulnerability exists within the DataLynx's suGuard program which allows a local attacker to gain administrative privilege by exploiting poor use of the /tmp directory and poor programming #!/bin/sh # sgrun exploit - the types of vulnerabilities that this exploit exercises # have no right b ...