MEDIUM
FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition
Published May 24, 2001
6.4
MEDIUMCVSS 2.0
EPSS 6.21%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.