MicroFocus Cobol 4.1, with the AppTrack feature enabled, installs the mfaslmf directory and the nolicense file with insecure permissions, which allows local users to gain privileges by modifying files.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-02/0205.html | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/bid/2359 | Exploit Patch Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2001-02/0205.html | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/bid/2359 | Exploit Patch Vendor Advisory |
Configurations
History
20 Nov 2024, 23:34
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2001-02/0205.html - Exploit, Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/2359 - Exploit, Patch, Vendor Advisory |
Information
Published : 2001-06-02 04:00
Updated : 2024-11-20 23:34
NVD link : CVE-2001-0208
Mitre link : CVE-2001-0208
CVE.ORG link : CVE-2001-0208
JSON object : View
Products Affected
microfocus
- cobol
CWE