7.2
CVSSv2

CVE-2001-0823

Published: 06/12/2001 Updated: 10/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The pmpost program in Performance Co-Pilot (PCP) prior to 2.2.1-3 allows a local user to gain privileges via a symlink attack on the NOTICES file in the PCP log directory (PCP_LOG_DIR).

Vulnerable Product Search on Vulmon Subscribe to Product

sgi performance co-pilot 2.1.11

sgi performance co-pilot 2.1.2

sgi performance co-pilot 2.1.9

sgi performance co-pilot 2.2

sgi performance co-pilot 2.1.3

sgi performance co-pilot 2.1.4

sgi performance co-pilot 2.1.5

sgi performance co-pilot 2.1.6

sgi performance co-pilot 2.1.1

sgi performance co-pilot 2.1.10

sgi performance co-pilot 2.1.7

sgi performance co-pilot 2.1.8

Exploits

source: wwwsecurityfocuscom/bid/2887/info Performance Co-Pilot (PCP) is a set of services to support system-level performance monitoring developed by SGI It has traditionally been an IRIX product, however SGI has made it open source and it is now available for Linux systems One of the utilities that ships with PCP is called 'pmpost' I ...