4.6
CVSSv2

CVE-2002-0265

Published: 29/05/2002 Updated: 18/10/2016
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Sawmill for Solaris 6.2.14 and previous versions creates the AdminPassword file with world-writable permissions, which allows local users to gain privileges by modifying the file.

Vulnerable Product Search on Vulmon Subscribe to Product

sawmill sawmill 6.2.14

sawmill sawmill 6.2.2

sawmill sawmill 6.2.8a

sawmill sawmill 6.2.9

sawmill sawmill 6.2.12

sawmill sawmill 6.2.13

sawmill sawmill 6.2.7

sawmill sawmill 6.2.8

sawmill sawmill 6.2.10

sawmill sawmill 6.2.11

sawmill sawmill 6.2.5

sawmill sawmill 6.2.6

sawmill sawmill 6.2

sawmill sawmill 6.2.1

sawmill sawmill 6.2.3

sawmill sawmill 6.2.4

Exploits

source: wwwsecurityfocuscom/bid/4077/info Sawmill is commercial log analysis software It runs on most Unix and Linux variants, Microsoft Windows NT/2000 operating systems and MacOS Sawmill creates the file AdminPassword with insecure default permissions on Solaris platforms AdminPassword is created with world readable/writeable permis ...