Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Fan-Out Linux and UNIX receiver scripts in Novell Identity Manager (IDM) 3.0.1 allows local users to execute arbitrary commands via unspecified vectors involving certain environment variables and "code injection."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Novell Identity Manager Shell脚本命令注入漏洞
Vulnerability Description
Novell Identity Manager(IDM)是美国Novell公司的一套身份认证管理解决方案。Roles Based Provisioning Module是其中的一个基于角色的配置模块。 Novell Identity Manager在处理本地用户的参数时存在漏洞,本地攻击者可能利用此漏洞提升自己的权限。 某些通过Identity Manager传送给Fan-Out Linux和UNIX接收器shell脚本的输入没有经过正确的过滤,攻击者注入任意命令。成功利用这个漏洞可能导致以root用户权
CVSS Information
N/A
Vulnerability Type
N/A