CVE-2002-0469
Published Aug 12, 2002
Last updated 16 years ago
Overview
- Description
- Ecartis (formerly Listar) 1.0.0 in snapshot 20020125 and earlier does not properly drop privileges when Ecartis is installed setuid-root, "lock-to-user" is not set, and ecartis is called by certain MTA's, which could allow local users to gain privileges.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.2
- Impact score
- 10
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ecartis:ecartis:1.0.0_snapshot_2002-01-21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C9FD55B-466F-4385-AF88-E341B7C5A32D" }, { "criteria": "cpe:2.3:a:ecartis:ecartis:1.0.0_snapshot_2002-01-25:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "240D0A65-FC01-4B21-9821-A786F5677785" }, { "criteria": "cpe:2.3:a:listar:listar:0.126a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65AE2735-44FB-4FCB-A520-7348ADE6F464" }, { "criteria": "cpe:2.3:a:listar:listar:0.127a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AA66A07F-CDF5-40DB-B999-7AA7C5000AF3" }, { "criteria": "cpe:2.3:a:listar:listar:0.129a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C15B56B6-ADC6-4D37-A561-914F52B73AAC" } ], "operator": "OR" } ] } ]