mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 23:27:33 +02:00
827 B
827 B
CVE-2016-1611
Description
Novell Filr 1.2 before Hot Patch 6 and 2.0 before Hot Patch 2 uses world-writable permissions for /etc/profile.d/vainit.sh, which allows local users to gain privileges by replacing this file's content with arbitrary shell commands.
POC
Reference
- http://seclists.org/bugtraq/2016/Jul/119
- http://seclists.org/bugtraq/2016/Jul/119
- https://www.exploit-db.com/exploits/40161/
- https://www.exploit-db.com/exploits/40161/
Github
No PoCs found on GitHub currently.