bctool in Jetico BestCrypt 0.7 and previous versions trusts the user-supplied PATH to find and execute an fsck utility program, which allows local users to gain privileges by modifying the PATH to point to a Trojan horse program.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jetico bestcrypt |