Vulnerabilities > CVE-2007-0368 - Local Privilege Escalation Vulnerabilites in MBSE-BBS MBSE_Root

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
michiel-broek
critical
exploit available

Summary

Stack-based buffer overflow in mbse-bbs 0.70 and earlier allows local users to execute arbitrary code via a long string in the MBSE_ROOT environment variable.

Exploit-Db

descriptionGNU/Linux mbse-bbs. CVE-2007-0368. Local exploit for linux platform
fileexploits/linux/local/3154.c
idEDB-ID:3154
last seen2016-01-31
modified2007-01-18
platformlinux
port
published2007-01-18
reporterprdelka
sourcehttps://www.exploit-db.com/download/3154/
titleGNU/Linux mbse-bbs <= 0.70.0 - Local Buffer Overflow Exploit
typelocal