Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the structure to be overwritten by the authenticate function and assign privileges to the wrong user.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM AIX Rexecd权限提升漏洞
Vulnerability Description
IBM AIX是一款商业性质UNIX操作系统。 IBM AIX包含的rexecd守护进程存在安全问题,远程攻击者可以利用这个漏洞获得ROOT权限。 这个漏洞可导致连接用户的用户信息被其他用户覆盖,而连接可能又覆盖的数据来处理,并以其他用户权限进行连接操作,因此根据联系用户的验证类型不同,可能导致攻击者获得ROOT权限,目前没有详细漏洞细节提供。
CVSS Information
N/A
Vulnerability Type
N/A