Vulnerability Name: | CVE-2003-0170 (CCN-11823) | ||||||||
Assigned: | 2003-03-27 | ||||||||
Published: | 2003-03-27 | ||||||||
Updated: | 2017-07-11 | ||||||||
Summary: | Unknown vulnerability in ftpd in IBM AIX 5.2, when configured to use Kerberos 5 for authentication, allows remote attackers to gain privileges via unknown attack vectors. | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2003-0170 Source: CCN Type: IBM Technical Support Web site AIX General Software Fixes Source: IBM Type: UNKNOWN MSS-OAR-E01-2003.0469.1 Source: AIXAPAR Type: Patch, Vendor Advisory IY42424 Source: CCN Type: IBM AIX APAR IY42424 IY42424: SECURITY: NATIVE GSSAPI FTPD INCORRECTLY AUTHENTICATES USER Source: OSVDB Type: UNKNOWN 4878 Source: CCN Type: OSVDB ID: 4878 IBM AIX FTPd Kerberos 5 Unspecified Administrative Access Source: BID Type: Patch, Vendor Advisory 7346 Source: CCN Type: BID-7346 IBM FTP Daemon Kerberos 5 Unspecified Administrative Access Vulnerability Source: XF Type: UNKNOWN aix-ftpd-gain-access(11823) Source: XF Type: UNKNOWN aix-ftpd-gain-access(11823) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |