Vulnerabilities > CVE-2001-0421 - Unspecified vulnerability in SUN Solaris and Sunos
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN sun
exploit available
Summary
FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition.
Vulnerable Configurations
Exploit-Db
description | Solaris 2.6 FTP Core Dump Shadow Password Recovery Vulnerability. CVE-2001-0421. Remote exploit for solaris platform |
id | EDB-ID:20764 |
last seen | 2016-02-02 |
modified | 2001-04-17 |
published | 2001-04-17 |
reporter | warning3 |
source | https://www.exploit-db.com/download/20764/ |
title | Solaris 2.6 FTP Core Dump Shadow Password Recovery Vulnerability |