CVE-2001-0573
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/08/2001
Last modified:
03/04/2025
Description
lsfs in AIX 4.x allows a local user to gain additional privileges by creating Trojan horse programs named (1) grep or (2) lslv in a certain directory that is under the user's control, which cause lsfs to access the programs in that directory.
Impact
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:ibm:aix:4:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://archives.neohapsis.com/archives/aix/2001-q2/0000.html
- http://www.kb.cert.org/vuls/id/123651
- http://www.osvdb.org/5582
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7007
- http://archives.neohapsis.com/archives/aix/2001-q2/0000.html
- http://www.kb.cert.org/vuls/id/123651
- http://www.osvdb.org/5582
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7007



