7.2
CVSSv2

CVE-2003-0262

Published: 27/05/2003 Updated: 11/07/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

leksbot 1.2.3 in Debian GNU/Linux installs the KATAXWR as setuid root, which allows local users to gain root privileges by exploiting unknown vulnerabilities related to the escalated privileges, which KATAXWR is not designed to have.

Vulnerable Product Search on Vulmon Subscribe to Product

leksbot leksbot 1.2

Vendor Advisories

Maurice Massar discovered that, due to a packaging error, the program /usr/bin/KATAXWR was inadvertently installed setuid root This program was not designed to run setuid, and contained multiple vulnerabilities which could be exploited to gain root privileges For the stable distribution (woody) this problem has been fixed in version 12-31 The ...

Exploits

/* source: wwwsecurityfocuscom/bid/7505/info Multiple vulnerabilities have been reported for Leksbot The precise nature of these vulnerabilities are currently unknown however, exploitation of this issue may result in an attacker obtaining elevated privileges This is because in some installations, the Leksbot binary may be installed setu ...