Lucene search

K
nvd[email protected]NVD:CVE-2008-0310
HistoryApr 07, 2008 - 5:44 p.m.

CVE-2008-0310

2008-04-0717:44:00
CWE-22
web.nvd.nist.gov
6

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

Directory traversal vulnerability in pkgadd in SCO UnixWare 7.1.4 before p534589 allows local users to create or append to arbitrary files via “…” sequences in an unspecified environment variable, probably PKGINST.

Affected configurations

Nvd
Node
scounixwareMatch7.1.4
VendorProductVersionCPE
scounixware7.1.4cpe:2.3:o:sco:unixware:7.1.4:*:*:*:*:*:*:*

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%