Vulnerabilities > CVE-2002-2221 - Local Privilege Escalation vulnerability in Chetcpasswd 2.3.1/2.3.3/2.4.1

047910
CVSS 6.2 - MEDIUM
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
high complexity
chetcpasswd

Summary

Untrusted search path vulnerability in Pedro Lineu Orso chetcpasswd 2.4.1 and earlier allows local users to gain privileges via a modified PATH that references a malicious cp binary. NOTE: this issue might overlap CVE-2006-6639.

Vulnerable Configurations

Part Description Count
Application
Chetcpasswd
3