Vulnerabilities > CVE-2001-1487 - Unspecified vulnerability in Qualcomm Qpopper 2.53/3.0

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
qualcomm
exploit available

Summary

popauth utility in Qualcomm Qpopper 4.0 and earlier allows local users to overwrite arbitrary files and execute commands as the pop user via a symlink attack on the -trace file option.

Vulnerable Configurations

Part Description Count
Application
Qualcomm
2

Exploit-Db

descriptionQPopper 4.0.x PopAuth Trace File Shell Command Execution Vulnerability. CVE-2001-1487. Remote exploit for unix platform
idEDB-ID:21185
last seen2016-02-02
modified2001-12-18
published2001-12-18
reporterIhaQueR
sourcehttps://www.exploit-db.com/download/21185/
titleQPopper 4.0.x PopAuth Trace File Shell Command Execution Vulnerability