vendor:
HP-UX
by:
milw0rm.com
7,2
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: HP-UX
Affected Version From: HP-UX B.11.11
Affected Version To: HP-UX B.11.11
Patch Exists: NO
Related CWE: N/A
CPE: o:hp:hp-ux
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: HP-UX
2006
HP-UX swmodify buffer overflow exploit
HP-UX 'swmodify' contains an exploitable stack overflow in the handling of command line arguements. Specifically the problem occurs due to insufficent bounds checking in the '-S' optional arguement. 'swmodify' is installed setuid root by default in HP-UX and allows for local root compromise when exploiting this issue.
Mitigation:
N/A