MicroFocus Cobol 4.1, with the AppTrack feature enabled, installs the mfaslmf directory and the nolicense file with insecure permissions, which allows local users to gain privileges by modifying files.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-02/0205.html | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/bid/2359 | Exploit Patch Vendor Advisory |
Configurations
Information
Published : 2001-06-01 21:00
Updated : 2008-09-05 13:23
NVD link : CVE-2001-0208
Mitre link : CVE-2001-0208
JSON object : View
CWE
Products Affected
microfocus
- cobol