7.2
CVSSv2

CVE-2001-0873

Published: 21/12/2001 Updated: 10/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

uuxqt in Taylor UUCP package does not properly remove dangerous long options, which allows local users to gain privileges by calling uux and specifying an alternate configuration file with the --config option.

Vulnerable Product Search on Vulmon Subscribe to Product

ian lance taylor taylor uucp 1.0.6

Exploits

source: wwwsecurityfocuscom/bid/3312/info Taylor UUCP is an implementation of the UUCP package written originally by Ian Lance Taylor A problem has been discovered in Taylor UUCP that makes it possible for local users to gain elevated privileges The problem is due to the handling of configuration files when passed to uucp via the --con ...