vendor:
suGuard Program
by:
mudge
7.2
CVSS
HIGH
Privilege Escalation
264
CWE
Product Name: suGuard Program
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
1999
DataLynx suGuard Program Vulnerability
A vulnerability exists within the DataLynx's suGuard program which allows a local attacker to gain administrative privilege by exploiting poor use of the /tmp directory and poor programming.
Mitigation:
Ensure that the /tmp directory is not used for storing sensitive information and that proper programming techniques are used.