Vulnerabilities > CVE-2000-0693 - Unspecified vulnerability in Tech-Source Raptor GFX Pgx32 2.3.1

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
tech-source
exploit available

Summary

pgxconfig in the Raptor GFX configuration tool uses a relative path name for a system call to the "cp" program, which allows local users to execute arbitrary commands by modifying their path to point to an alternate "cp" program.

Vulnerable Configurations

Part Description Count
Application
Tech-Source
1

Exploit-Db

descriptionTech-Source Raptor GFX PGX32 2.3.1 Config Tool Vulnerability. CVE-2000-0693,CVE-2000-0695. Local exploit for solaris platform
idEDB-ID:20147
last seen2016-02-02
modified2000-08-02
published2000-08-02
reportersuid
sourcehttps://www.exploit-db.com/download/20147/
titleTech-Source Raptor GFX PGX32 2.3.1 Config Tool Vulnerability