vendor:
HP-UX
by:
watercloud xfocus org
7,2
CVSS
HIGH
Format String Vulnerability
134
CWE
Product Name: HP-UX
Affected Version From: HP-UX B11.11
Affected Version To: HP-UX B11.11
Patch Exists: NO
Related CWE: N/A
CPE: o:hp:hp-ux
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: HP-UX
2003
HP-UX 11i NLS Format Bug
This exploit is used to gain a local root shell from /usr/bin/ct, using HP-UX location language format string bug. It works by setting up a malicious environment variable and then executing the ct command with a specially crafted argument.
Mitigation:
Ensure that all user-supplied input is properly validated and sanitized.