Vulnerabilities > CVE-2002-1513 - Unspecified vulnerability in Compaq Tcp-Ip Services

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
compaq
exploit available

Summary

The UCX POP server in HP TCP/IP services for OpenVMS 4.2 through 5.3 allows local users to truncate arbitrary files via the -logfile command line option, which overrides file system permissions because the server runs with the SYSPRV and BYPASS privileges.

Exploit-Db

descriptionOpenVMS 5.3/6.2/7.x UCX POP Server Arbitrary File Modification Vulnerability. CVE-2002-1513. Local exploits for multiple platform
idEDB-ID:21856
last seen2016-02-02
modified2002-09-25
published2002-09-25
reporterMike Riley
sourcehttps://www.exploit-db.com/download/21856/
titleOpenVms 5.3/6.2/7.x UCX POP Server Arbitrary File Modification Vulnerability