Lucene search

K
cvelistMitreCVELIST:CVE-2010-3361
HistoryOct 20, 2010 - 5:00 p.m.

CVE-2010-3361

2010-10-2017:00:00
mitre
www.cve.org
3
shrew soft ike
privilege escalation
zero-length directory
local users
trojan horse

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

The (1) iked, (2) ikea, and (3) ikec scripts in Shrew Soft IKE 2.1.5 place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVELIST:CVE-2010-3361