7.5
CVSSv2

CVE-2004-0390

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SCO OpenServer 5.0.5 up to and including 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote malicious users to gain unauthorized access to an X session via other X login methods.

Vulnerable Product Search on Vulmon Subscribe to Product

sco openserver 5.0.5

sco openserver 5.0.6

sco openserver 5.0.7

Exploits

source: wwwsecurityfocuscom/bid/2731/info OpenServer is a Unix based operating system distributed by Santa Cruz Operations A problem in access control of the X server could allow a local user to gain elevated privileges When the X Window System is started via the xhost script, insufficient xhost access control allows a user to execute ...