Vulnerabilities > CVE-2002-1715 - Unspecified vulnerability in SSH and Ssh2

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
ssh
exploit available

Summary

SSH 1 through 3, and possibly other versions, allows local users to bypass restricted shells such as rbash or rksh by uploading a script to a world-writeable directory, then executing that script to gain normal shell access.

Exploit-Db

descriptionSSH2 3.0 Restricted Shell Escaping Command Execution Vulnerability. CVE-2002-1715. Local exploit for linux platform
idEDB-ID:21398
last seen2016-02-02
modified2002-04-18
published2002-04-18
reporterA.Dimitrov
sourcehttps://www.exploit-db.com/download/21398/
titleSSH2 3.0 Restricted Shell Escaping Command Execution Vulnerability