Accellion Kiteworks appliances before kw2016.03.00 use setuid-root permissions for /opt/bin/cli, which allows local users to gain privileges via unspecified vectors.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/305607 | third party advisory us government resource |
http://www.securityfocus.com/bid/92662 | vdb entry |