Vulnerability Name: | CVE-2002-1794 (CCN-10266) | ||||||||
Assigned: | 2002-10-01 | ||||||||
Published: | 2002-10-01 | ||||||||
Updated: | 2017-10-11 | ||||||||
Summary: | Unknown vulnerability in pam_authz in the LDAP-UX Integration product on HP-UX 11.00 and 11.11 allows remote attackers to execute r-commands with privileges of other users. | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: MITRE Type: CNA CVE-2002-1794 Source: CCN Type: Hewlett-Packard Company Security Bulletin HPSBUX0209-221 Security Vulnerability in LDAP-UX Integration Source: HP Type: Patch, Vendor Advisory HPSBUX0209-221 Source: CCN Type: CIAC Information Bulletin N-006 HP pam_authz in LDAP-UX Integration Vulnerabilities Source: CIAC Type: Patch, Vendor Advisory N-006 Source: XF Type: Patch hp-ldapux-pamauthz-bypass(10266) Source: CCN Type: OSVDB ID: 37559 HP-UX LDAP-UX Integration pam_authz Unspecified Remote Command Execution Source: BID Type: Patch 5839 Source: CCN Type: BID-5839 HP-UX LDAP-UX Integration Pam-Authz Privilege Escalation Vulnerability Source: XF Type: UNKNOWN hp-ldapux-pamauthz-bypass(10266) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:5593 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |