Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Inventory Scout daemon (invscoutd) 1.3.0.0 and 2.0.2 for AIX 4.3.3 and 5.1 allows local users to gain privileges via a symlink attack on a command line argument (log file). NOTE: this might be related to CVE-2006-5002.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AIX Invscoutd符号连接漏洞
Vulnerability Description
IBM AIX是一款商业性质UNIX操作系统。 AIX invscoutd不安全建立临时文件,本地攻击者可以利用这个漏洞提升权限。 AIX invscoutd由于设计错误,允许用户指定一个日志文件来写入数据,恶意用户可以建议一个指向本地系统文件的符号连接,当运行invscoutd写入日志信息时,可破坏指向的本地文件,造成本地拒绝服务,或权限提升。
CVSS Information
N/A
Vulnerability Type
N/A