Fujitsu-Siemens ServerView Insecure Permissions Vulnerability
BID:11114
Info
Fujitsu-Siemens ServerView Insecure Permissions Vulnerability
| Bugtraq ID: | 11114 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 06 2004 12:00AM |
| Updated: | Sep 06 2004 12:00AM |
| Credit: | Discovered by Rene <[email protected]>. |
| Vulnerable: |
Fujitsu-Siemens ServerView 3.0 |
| Not Vulnerable: | |
Discussion
Fujitsu-Siemens ServerView Insecure Permissions Vulnerability
It has been reported that local, unprivileged users may corrupt the SNMP MIB and, possibly, other sensitive system components. This is reportedly due to insecure permissions set on file "/usr/share/snmp/mibs/.index", which specifies the location of files used to build the MIB tree.
It has been reported that local, unprivileged users may corrupt the SNMP MIB and, possibly, other sensitive system components. This is reportedly due to insecure permissions set on file "/usr/share/snmp/mibs/.index", which specifies the location of files used to build the MIB tree.
Exploit / POC
Fujitsu-Siemens ServerView Insecure Permissions Vulnerability
There is no exploit code required.
There is no exploit code required.
Solution / Fix
Fujitsu-Siemens ServerView Insecure Permissions Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Fujitsu-Siemens ServerView Insecure Permissions Vulnerability
References:
References: