CVE-2002-2323

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
31/12/2002
Last modified:
03/04/2025

Description

Sun PC NetLink 1.0 through 1.2 does not properly set the access control list (ACL) for files and directories that use symbolic links and have been restored from backup, which could allow local or remote attackers to bypass intended access restrictions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sun:solaris_pc_netlink:*:*:*:*:*:*:*:* 1.0 (including) 1.2 (including)