7.2
CVSSv2

CVE-2003-0089

Published: 15/12/2003 Updated: 11/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local users to execute arbitrary code via a long LANG environment variable to setuid programs such as (1) swinstall and (2) swmodify.

Vulnerable Product Search on Vulmon Subscribe to Product

hp hp-ux 11.00

hp hp-ux 11.11

Exploits

source: wwwsecurityfocuscom/bid/8986/info HP has reported that some Software Distributor (SD) utilities are prone to a locally exploitable buffer-overrun vulnerability Affected utilities include swinstall(1M) and swverify(1M) /* Program : x_hpux_11i_swc Use : HP-UX 1111/110 exploit swxxx to get local root shell Complie : ...