Vulnerabilities > CVE-2000-0881 - Unspecified vulnerability in Plus Technologies Lpplus 3.2.2/3.3

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
local
low complexity
plus-technologies
exploit available

Summary

The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files.

Vulnerable Configurations

Part Description Count
Application
Plus_Technologies
2

Exploit-Db

descriptionLPPlus 3.2.2/3.3 dccscan unprivileged read vulnerability. CVE-2000-0881. Local exploit for unix platform
idEDB-ID:20193
last seen2016-02-02
modified2000-09-06
published2000-09-06
reporterDixie Flatline
sourcehttps://www.exploit-db.com/download/20193/
titleLPPlus 3.2.2/3.3 - dccscan unprivileged read Vulnerability