6.2
CVSSv2

CVE-2003-0265

Published: 27/05/2003 Updated: 18/10/2016
CVSS v2 Base Score: 6.2 | Impact Score: 10 | Exploitability Score: 1.9
VMScore: 625
Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local malicious users to gain root privileges by modifying the files before the permissions are changed.

Vulnerable Product Search on Vulmon Subscribe to Product

sap sap db 7.4.3.7_beta

sap sap db 7.3.29

Exploits

source: wwwsecurityfocuscom/bid/7421/info SAP Database SDBINST has been reported prone to a race condition vulnerability It has been reported that the SAP Database install tool SDBINST may perform operations non-atomically when installing the SAP database This condition may open a window of opportunity for a malicious user to replace o ...