mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-04 22:18:13 +02:00
888 B
888 B
CVE-2004-1329
Description
Untrusted execution path vulnerability in the diag commands (1) lsmcode, (2) diag_exec, (3) invscout, and (4) invscoutd in AIX 5.1 through 5.3 allows local users to execute arbitrary programs by modifying the DIAGNOSTICS environment variable to point to a malicious Dctrl program.
POC
Reference
- http://marc.info/?l=bugtraq&m=110355931920123&w=2
- http://marc.info/?l=bugtraq&m=110355931920123&w=2
- https://www.exploit-db.com/exploits/701
- https://www.exploit-db.com/exploits/701
Github
No PoCs found on GitHub currently.