Lucene search

K
cveMitreCVE-2007-6594
HistoryDec 28, 2007 - 9:46 p.m.

CVE-2007-6594

2007-12-2821:46:00
CWE-264
mitre
web.nvd.nist.gov
29
ibm
lotus notes
linux
installation
vulnerability
nvd

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

IBM Lotus Notes 8 for Linux before 8.0.1 uses (1) unspecified weak permissions for the installation kit obtained through a Notes 8 download and (2) 0777 permissions for the installdata file that is created by setup.sh, which allows local users to gain privileges via a Trojan horse file.

Affected configurations

Nvd
Node
ibmlotus_notesRange8.0.1linux
VendorProductVersionCPE
ibmlotus_notes*cpe:2.3:a:ibm:lotus_notes:*:*:linux:*:*:*:*:*

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2007-6594