Vulnerabilities > CVE-2005-1025 - Information Disclosure vulnerability in IBM Iseries AS 400 4.3
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
The FTP server in AS/400 4.3, when running in IFS mode, allows remote attackers to obtain sensitive information via a symlink attack using RCMD and the ADDLNK utility, as demonstrated using the QSYS.LIB library.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Hardware | 1 |