2.1
CVSSv2

CVE-2000-0816

Published: 06/10/2000 Updated: 10/10/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat linux 6.2

redhat linux 7.0

Exploits

source: wwwsecurityfocuscom/bid/1785/info A vulnerability exists in tmpwatch, a utility which automates the removal of temporary files in unix-like systems An optional component of tmpwatch, fuser, improperly handles arguments to system() library calls If an attacker creates a file with a maliciously-constructed filename including shell ...