Ascential DataStage Multiple Local Vulnerabilities
BID:26677
Info
Ascential DataStage Multiple Local Vulnerabilities
| Bugtraq ID: | 26677 |
| Class: | Unknown |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 03 2007 12:00AM |
| Updated: | Dec 03 2007 11:13PM |
| Credit: | Discovery is credited to Ryan NA. |
| Vulnerable: |
Ascential Ascential DataStage 7.5 |
| Not Vulnerable: | |
Discussion
Ascential DataStage Multiple Local Vulnerabilities
Ascential DataStage is prone to three security vulnerabilities that a local attacker may exploit to obtain sensitive information and to manipulate files.
These issues were reported to affect Ascential DataStage 7.5; other versions may also be affected.
Ascential DataStage is prone to three security vulnerabilities that a local attacker may exploit to obtain sensitive information and to manipulate files.
These issues were reported to affect Ascential DataStage 7.5; other versions may also be affected.
Exploit / POC
Ascential DataStage Multiple Local Vulnerabilities
A local user can exploit these issues from the command-line interface.
A local user can exploit these issues from the command-line interface.
Solution / Fix
Ascential DataStage Multiple Local Vulnerabilities
Solution:
Reportedly, the vendor has released a fix for the issue related to additional logging output options. Symantec has not confirmed this. Please contact the vendor for information about the availability of fixes.
Solution:
Reportedly, the vendor has released a fix for the issue related to additional logging output options. Symantec has not confirmed this. Please contact the vendor for information about the availability of fixes.