PT-2000-1175 · Corel+1 · Corel Linux+1
Publicado
2000-03-02
·
Atualizado
2008-09-10
·
CVE-2000-0193
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Corel Linux version 1.0
Description
The default configuration of Dosemu in Corel Linux allows local users to execute the system.com program and gain privileges.
Recommendations
For Corel Linux version 1.0, consider changing the default configuration of Dosemu to restrict access to the system.com program and prevent privilege escalation. As a temporary workaround, consider disabling the execution of system.com until a more permanent solution is available.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Corel Linux
Dosemu