Vulnerabilities > CVE-2001-0421 - Unspecified vulnerability in SUN Solaris and Sunos
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
PARTIAL Summary
FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition.
Vulnerable Configurations
Exploit-Db
description | Solaris 2.6 FTP Core Dump Shadow Password Recovery Vulnerability. CVE-2001-0421. Remote exploit for solaris platform |
id | EDB-ID:20764 |
last seen | 2016-02-02 |
modified | 2001-04-17 |
published | 2001-04-17 |
reporter | warning3 |
source | https://www.exploit-db.com/download/20764/ |
title | Solaris 2.6 FTP Core Dump Shadow Password Recovery Vulnerability |