Lucene search

K
nvd[email protected]NVD:CVE-2002-1871
HistoryDec 31, 2002 - 5:00 a.m.

CVE-2002-1871

2002-12-3105:00:00
web.nvd.nist.gov
7

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

23.7%

pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a “?” (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges.

Affected configurations

Nvd
Node
sunsolarisMatch2.6
OR
sunsunosMatch5.5.1
OR
sunsunosMatch5.7
OR
sunsunosMatch5.8
VendorProductVersionCPE
sunsolaris2.6cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*
sunsunos5.5.1cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*
sunsunos5.7cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*
sunsunos5.8cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

23.7%

Related for NVD:CVE-2002-1871