Raritan Dominion SX (DSX) Console Servers DSX16, DSX32, DSX4, DSX8, and DSXA-48 set (1) world-readable permissions for /etc/shadow and (2) world-writable permissions for /bin/busybox, which allows local users to obtain hashed passwords or execute arbitrary code as other users.
References
Link | Resource |
---|---|
http://seclists.org/lists/bugtraq/2005/Jun/0251.html | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/bid/14084 | |
http://secunia.com/advisories/15853 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-07-04 21:00
Updated : 2008-09-05 13:50
NVD link : CVE-2005-2136
Mitre link : CVE-2005-2136
JSON object : View
CWE
Products Affected
raritan
- dominion