Vulnerabilities > CVE-2002-0225 - Unspecified vulnerability in Cisco Tacacs+ F4.0.4Alpha
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
tac_plus Tacacs+ daemon F4.0.4.alpha, originally maintained by Cisco, creates files from the accounting directive with world-readable and writable permissions, which allows local users to access and modify sensitive files.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |