PT-2006-5748 · Ibm · Ibm Aix
Published
2006-09-27
·
Updated
2017-07-20
·
CVE-2006-5007
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
IBM AIX versions 5.2.0 through 5.3.0
Description
The issue concerns an untrusted search path vulnerability in the uucp component, allowing local users to gain privileges through a Trojan horse program involving uux.
Recommendations
For IBM AIX versions 5.2.0 through 5.3.0, consider restricting access to the uux functionality until a fix is available.
As a temporary workaround, avoid using the uux command in sensitive environments to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Aix