Security Advisory

CVE-2006-3878

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-07-27 00:00:00
Last updated 2024-08-07 18:48:39
Assigner mitre
State PUBLISHED

Description

Opsware Network Automation System (NAS) 6.0 installs /etc/init.d/mysql with insecure permissions, which allows local users to read the root password for the MySQL MAX database or gain privileges by modifying /etc/init.d/mysql.