IBM AIX WebSM Remote Client For Linux Local Insecure File Permissions Vulnerability
BID:27433
Info
IBM AIX WebSM Remote Client For Linux Local Insecure File Permissions Vulnerability
| Bugtraq ID: | 27433 |
| Class: | Configuration Error |
| CVE: |
CVE-2008-0585 |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 22 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | The vendor discovered this vulnerability. |
| Vulnerable: |
IBM AIX 5.3 IBM AIX 5.2 |
| Not Vulnerable: | |
Discussion
IBM AIX WebSM Remote Client For Linux Local Insecure File Permissions Vulnerability
IBM AIX WebSM Remote Client for Linux is prone to a local insecure-file-permissions vulnerability.
A local attacker can exploit this issue to gain unauthorized access to certain files and alter the behavior of the affected application. This may help in further attacks.
IBM AIX WebSM Remote Client for Linux is prone to a local insecure-file-permissions vulnerability.
A local attacker can exploit this issue to gain unauthorized access to certain files and alter the behavior of the affected application. This may help in further attacks.
Exploit / POC
IBM AIX WebSM Remote Client For Linux Local Insecure File Permissions Vulnerability
An attacker uses readily available tools to exploit this issue.
An attacker uses readily available tools to exploit this issue.
Solution / Fix
IBM AIX WebSM Remote Client For Linux Local Insecure File Permissions Vulnerability
Solution:
The vendor has released an advisory and patches to address this issue. Please see the references for more information.
Solution:
The vendor has released an advisory and patches to address this issue. Please see the references for more information.
References
IBM AIX WebSM Remote Client For Linux Local Insecure File Permissions Vulnerability
References:
References: