Beveiligingsadvies

CVE-2007-1370

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2007-03-09 22:00:00
Laatst bijgewerkt 2024-08-07 12:50:34
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Zend Platform 2.2.3 and earlier has incorrect ownership for scd.sh and certain other files, which allows local users to gain root privileges by modifying the files. NOTE: this only occurs when safe_mode and open_basedir are disabled; other settings require leverage for other vulnerabilities.