7.2
CVSSv2

CVE-2002-0469

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Ecartis (formerly Listar) 1.0.0 in snapshot 20020125 and previous versions does not properly drop privileges when Ecartis is installed setuid-root, "lock-to-user" is not set, and ecartis is called by certain MTA's, which could allow local users to gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

listar listar 0.129a

ecartis ecartis 1.0.0 snapshot 2002-01-25

listar listar 0.126a

ecartis ecartis 1.0.0 snapshot 2002-01-21

listar listar 0.127a