IBM U2 UniVerse cci_dir Insecure...

- AV AC AU C I A
发布: 2003-07-16
修订: 2025-04-13

It has been reported that IBM UniVerse may not properly create filesystem links. Attackers may be able to take advantage of the insecure usage of linking functions to create and delete files. Because the vulnerable binary is installed with suid root privileges, unprivileged users may perform these operations with elevated privileges. While this vulnerability was reported in UniVerse version 10.0.0.9, previous versions are likely vulnerable as well.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息