The default configuration of sendmail in IBM AIX 6.1 and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, allows local users to gain privileges by entering a command in a .forward file in a home directory.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1027207 | vdb entry |
http://www.ibm.com/support/docview.wss?uid=isg1IV22965 | vendor advisory |
http://www.ibm.com/support/docview.wss?uid=isg1IV22963 | vendor advisory |
http://aix.software.ibm.com/aix/efixes/security/sendmail1_advisory.asc | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/76466 | vdb entry |
http://www.ibm.com/support/docview.wss?uid=isg1IV22964 | vendor advisory |
http://www.ibm.com/support/docview.wss?uid=isg1IV22966 | vendor advisory |