Vulnerabilities > CVE-2002-0469
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Ecartis (formerly Listar) 1.0.0 in snapshot 20020125 and earlier does not properly drop privileges when Ecartis is installed setuid-root, "lock-to-user" is not set, and ecartis is called by certain MTA's, which could allow local users to gain privileges.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 | |
Application | 2 |
References
- http://archives.neohapsis.com/archives/vulnwatch/2002-q1/0063.html
- http://archives.neohapsis.com/archives/vulnwatch/2002-q1/0063.html
- http://www.iss.net/security_center/static/8444.php
- http://www.iss.net/security_center/static/8444.php
- http://www.securityfocus.com/archive/1/261209
- http://www.securityfocus.com/archive/1/261209
- http://www.securityfocus.com/bid/4277
- http://www.securityfocus.com/bid/4277