Untrusted search path vulnerability in Qualcomm qpopper 4.0 through 4.05 allows local users to execute arbitrary code by modifying the PATH environment variable to reference a malicious smbpasswd program.
Weaknesses in this category are typically introduced during the configuration of the software.
Link | Tags |
---|---|
http://securityreason.com/securityalert/3268 | third party advisory |
http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0047.html | mailing list exploit |
http://www.securityfocus.com/archive/1/319811 | mailing list exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/11877 | vdb entry |
http://www.securityfocus.com/bid/7447 | vdb entry exploit |