cci_dir in IBM U2 UniVerse 10.0.0.9 and earlier creates...
Moderate severity
Unreviewed
Published
Apr 29, 2022
to the GitHub Advisory Database
•
Updated Feb 4, 2024
Description
Published by the National Vulnerability Database
Aug 18, 2003
Published to the GitHub Advisory Database
Apr 29, 2022
Last updated
Feb 4, 2024
cci_dir in IBM U2 UniVerse 10.0.0.9 and earlier creates hard links and unlinks files as root, which allows local users to gain privileges by deleting and overwriting arbitrary files.
References