vendor:
Enterprise Linux
by:
Tlabs
7,2
CVSS
HIGH
Privilege Escalation
264
CWE
Product Name: Enterprise Linux
Affected Version From: Redhat Linux 6.2
Affected Version To: Redhat Linux 6.2
Patch Exists: No
Related CWE: N/A
CPE: o:redhat:enterprise_linux:6.2
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
Unknown
Perl Exploit of Restore and Dump
This exploit is written in Perl and is used to gain root access on Redhat Linux 6.2. It uses the setuid and setgid functions to gain root access. It also uses the dump and restore commands to gain access to the system.
Mitigation:
Ensure that the dump and restore commands are not setuid or setgid.