Beveiligingsadvies

CVE-2003-1167

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2005-05-10 04:00:00
Laatst bijgewerkt 2024-08-08 02:19:46
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

misc.cpp in KPopup 0.9.1 trusts the PATH variable when executing killall, which allows local users to elevate their privileges by modifying the PATH variable to reference a malicious killall program.