[Forgot Password]
Login  Register Subscribe

24128

 
 

131573

 
 

111017

 
 

909

 
 

86402

 
 

136

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML view JSON

CVE-2008-2515Date: (C)2008-06-02   (M)2018-04-14


Unspecified vulnerability in iostat in IBM AIX 5.2, 5.3, and 6.1 allows local users to gain privileges via unknown vectors related to an "environment variable handling error."

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score : CVSS Score : 7.2
Exploit Score: Exploit Score: 3.9
Impact Score: Impact Score: 10.0
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: Access Vector: LOCAL
Attack Complexity: Access Complexity: LOW
Privileges Required: Authentication: NONE
User Interaction: Confidentiality: COMPLETE
Scope: Integrity: COMPLETE
Confidentiality: Availability: COMPLETE
Integrity:  
Availability:  
  
Reference:
SECTRACK-1020085
BID-29325
SECUNIA-30349
ADV-2008-1626
IZ20635
IZ21506
IZ22349
IZ22350
IZ22351
http://aix.software.ibm.com/aix/efixes/security/iostat_advisory.asc
ibm-aix-setuidroot-iostat-bo(42579)

CPE    3
cpe:/o:ibm:aix:5.2
cpe:/o:ibm:aix:5.3
cpe:/o:ibm:aix:6.1
CWE    1
CWE-264
OVAL    2
oval:org.secpod.oval:def:1100026
oval:org.secpod.oval:def:1100028

© SecPod Technologies