6.4
CVSSv2

CVE-2001-0421

Published: 02/07/2001 Updated: 30/10/2018
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

FTP server in Solaris 8 and previous versions allows local and remote malicious users to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition.

Vulnerable Product Search on Vulmon Subscribe to Product

sun solaris 2.6

sun sunos

Exploits

source: wwwsecurityfocuscom/bid/2601/info Solaris is the variant of the UNIX Operating System distributed by Sun Microsystems Solaris is designed as a scalable operating system for the Intel x86 and Sun Sparc platforms, and operates on machines varying from desktop to enterprise server A problem in the ftp server included with the Sola ...