By default, insecure permissions are set on the file storing the user database that is shipped with Borland Interbase. The permissions, 0666, permit all users to write to the file. This configuration error can be exploited to gain administrative access within the database. The consequences of this flaw may extend further if the database supports applications.
By default, insecure permissions are set on the file storing the user database that is shipped with Borland Interbase. The permissions, 0666, permit all users to write to the file. This configuration error can be exploited to gain administrative access within the database. The consequences of this flaw may extend further if the database supports applications.