7.2
CVSSv2

CVE-2000-0702

Published: 20/10/2000 Updated: 10/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The net.init rc script in HP-UX 11.00 (S008net.init) allows local users to overwrite arbitrary files via a symlink attack that points from /tmp/stcp.conf to the targeted file.

Vulnerable Product Search on Vulmon Subscribe to Product

hp hp-ux 11.00

Exploits

source: wwwsecurityfocuscom/bid/1602/info A vulnerability exists in HP-UX, from Hewlett Packard, under certain configurations Version 110 is confirmed to have this problem; other versions may also be susceptible If the CLEAR_TMP option in /etc/rcconfigd is set to 1, meaning enabled, it is possible for a local user to create a symboli ...