Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The RemoteClient component in IBM Rational ClearCase 8.0.0.03 through 8.0.0.07, and 8.0.1, uses world-writable permissions for the rcleartool script, which allows local users to gain privileges by appending commands.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Rational ClearCase 本地提权漏洞
Vulnerability Description
IBM Rational ClearCase是美国IBM公司的一套软件配置管理解决方案。该方案可提供版本控制、工作空间管理、并行开发支持和构建审计等功能。 IBM Rational ClearCase 8.0.0.03至8.0.0.07版本及8.0.1版本中的RemoteClient组件中存在提权漏洞,该漏洞源于对rcleartool脚本文件使用全局可写权限。本地攻击者可通过插入额外的命令到脚本,利用该漏洞获取特权。
CVSS Information
N/A
Vulnerability Type
N/A