7.2
CVSSv2

CVE-2003-0497

Published: 07/08/2003 Updated: 10/02/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privileges by modifying cache and executing it via cuxs.

Vulnerable Product Search on Vulmon Subscribe to Product

intersystems cache database 5

Exploits

source: wwwsecurityfocuscom/bid/8070/info It has been reported that the permissions set by default on the files and directories comprising InterSystems Cache are insecure The permissions on directories allegedly allow for any user to overwrite any file This creates many opportunities for local attackers to obtain root privileges #!/bi ...