HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
References
Configurations
Information
Published : 2000-02-16 21:00
Updated : 2008-09-10 12:03
NVD link : CVE-2000-0159
Mitre link : CVE-2000-0159
JSON object : View
CWE
Products Affected
hp
- hp-ux