The scosession program in OpenServer 5.0.6 and 5.0.7 allows local users to gain privileges via crafted strings on the commandline.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/12372 | vdb entry vendor advisory |
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.5/SCOSA-2005.5.txt | vendor advisory |
http://www.kb.cert.org/vuls/id/972598 | us government resource third party advisory patch |
http://secunia.com/advisories/14012/ | third party advisory patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/19479 | vdb entry |