6.8
CVSSv2

CVE-2012-4845

Published: 20/10/2012 Updated: 31/08/2021
CVSS v2 Base Score: 6.8 | Impact Score: 6.9 | Exploitability Score: 8
VMScore: 605
Vector: AV:N/AC:L/Au:S/C:C/I:N/A:N

Vulnerability Summary

The FTP client in IBM AIX 6.1 and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, does not properly manage privileges in an RBAC environment, which allows malicious users to bypass intended file-read restrictions by leveraging the setuid installation of the ftp executable file.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm aix 6.1

ibm aix 7.1

ibm vios 2.2.1.4