Vulnerabilities > CVE-2001-1198 - Unspecified vulnerability in HP Hp-Ux

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
hp

Summary

RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.

Vulnerable Configurations

Part Description Count
OS
Hp
5

Oval

accepted2014-03-24T04:01:46.713-04:00
classvulnerability
contributors
  • nameMichael Wood
    organizationHewlett-Packard
  • nameSushant Kumar Singh
    organizationHewlett-Packard
descriptionRLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.
familyunix
idoval:org.mitre.oval:def:5763
statusaccepted
submitted2008-07-10T16:22:36.000-04:00
titleAn rlpdaemon logic flaw vulnerability has been reported to us that may allow a remote or local attacker to execute arbitrary code with superuser privilege.
version38