CVE-2001-1080
diagrpt in AIX 4.3.x and 5.1 uses the DIAGDATADIR environment variable to find and execute certain programs, which allows local users to gain privileges by modifying the variable to point to a Trojan horse program.
- Affected products
- Aix
- Ibm Aix
- = 4.3, 5.1
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 5.9% (93th percentile)
- NVD status
- Modified
- Published
- 2002-03-09
CVE-2001-1080 at NVD
1 known exploit for CVE-2001-1080
Proof-of-concept code and exploit modules indexed by Sploitus