Fcron FCronTab/FCronSighUp Multiple...

- AV AC AU C I A
发布: 2004-11-15
修订: 2025-04-13

Fcron is reported prone to multiple local vulnerabilities. The following issues are reported: A local information disclosure vulnerability is reported to affect fcronsighup. It is reported that the affected utility will attempt to parse configuration files that are passed to the utility as a command line argument. A local attacker may exploit this condition to reveal the contents of arbitrary files that are owned by the superuser. This vulnerability is assigned the following MITRE CVE identifier: CAN-2004-1030. An access control bypass vulnerability is also reported to affect fcronsighup. It is reported that the issue exists due to a design error. A local attacker may exploit this vulnerability to make configuration changes to fcronsighup. This vulnerability is assigned the following MITRE CVE identifier: CAN-2004-1031. fcronsighup is reported prone to an arbitrary file deletion vulnerability. By exploiting the aforementioned access control bypass vulnerability, a local attacker...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息