CVE-2003-1358
Gravedad CVSS v2.0:
ALTA
Tipo:
CWE-264
Permisos, privilegios y/o control de acceso
Fecha de publicación:
31/12/2003
Última modificación:
03/04/2025
Descripción
*** Pendiente de traducción *** rs.F300 for HP-UX 10.0 through 11.22 uses the PATH environment variable to find and execute programs such as rm while operating at raised privileges, which allows local users to gain privileges by modifying the path to point to a malicious rm program.
Impacto
Puntuación base 2.0
7.20
Gravedad 2.0
ALTA
Productos y versiones vulnerables
| CPE | Desde | Hasta |
|---|---|---|
| cpe:2.3:o:hp:hp-ux:10.00:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.08:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.09:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.16:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.24:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.26:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.30:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:10.34:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:11.0.4:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:11.04:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:hp-ux:11.11:*:*:*:*:*:*:* |
Para consultar la lista completa de nombres de CPE con productos y versiones, ver esta página
Referencias a soluciones, herramientas e información
- http://securityreason.com/securityalert/3236
- http://www.securityfocus.com/advisories/4960
- http://www.securityfocus.com/archive/1/324381
- http://www.securityfocus.com/bid/6837
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11312
- http://securityreason.com/securityalert/3236
- http://www.securityfocus.com/advisories/4960
- http://www.securityfocus.com/archive/1/324381
- http://www.securityfocus.com/bid/6837
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11312



