10
CVSSv2

CVE-2002-0311

Published: 31/05/2002 Updated: 11/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Vulnerability in webtop in UnixWare 7.1.1 and Open UNIX 8.0.0 allows local and possibly remote malicious users to gain root privileges via shell metacharacters in the -c argument for (1) in scoadminreg.cgi or (2) service_action.cgi.

Vulnerable Product Search on Vulmon Subscribe to Product

caldera unixware 7.1.1

caldera openunix 8.0

Exploits

source: wwwsecurityfocuscom/bid/3936/info UnixWare is a commercial Unix implementation distributed originally developed by SCO It is now maintained and distributed by Caldera The scoadminregcgi program does not properly validate user input when executed with the -c option Because of this, a user may load an arbitrary program with the ...