Vulnerabilities > CVE-2004-0318 - Privilege Escalation vulnerability in Platform Load Sharing Facility EAuth

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
platform
critical
exploit available

Summary

Load Sharing Facility (LSF) 4.x, 5.x, and 6.x uses the LSF_EAUTH_UID environment variable, if it exists, instead of the real UID of the user, which could allow remote attackers within the local cluster to gain privileges.

Vulnerable Configurations

Part Description Count
Application
Platform
5

Exploit-Db

descriptionPlatform Load Sharing Facility 4/5/6 EAuth Privilege Escalation Vulnerability. CVE-2004-0318. Local exploit for linux platform
idEDB-ID:23743
last seen2016-02-02
modified2003-02-23
published2003-02-23
reporterTomasz Grabowski
sourcehttps://www.exploit-db.com/download/23743/
titlePlatform Load Sharing Facility 4/5/6 - EAuth Privilege Escalation Vulnerability