Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Novell Filr 1.2 before Hot Patch 6 and 2.0 before Hot Patch 2 uses world-writable permissions for /etc/profile.d/vainit.sh, which allows local users to gain privileges by replacing this file's content with arbitrary shell commands.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Novell Filr 权限许可和访问控制漏洞
Vulnerability Description
Novell Filr是美国Novell公司的一套用于企业的文件访问和共享解决方案。 Novell Filr 1.2 Security Update 2及之前的版本和2.0 Security Update 1及之前的版本存在安全漏洞,该漏洞源于程序对‘/etc/profile.d/vainit.sh’文件分配全局可写权限。本地攻击者可利用该漏洞获取权限。
CVSS Information
N/A
Vulnerability Type
N/A