CVE-2000-0005

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Jan 2, 1999
Updated: Nov 20, 2024

Summary

CVE-2000-0005 is a vulnerability affecting the HP-UX aserver program. This issue permits local users to elevate their privileges by creating a symlink (symbolic link) attack. By manipulating the way the aserver program handles symlinks, an attacker can gain root access and execute unauthorized commands with increased privileges. This security flaw poses a significant risk to systems running the HP-UX aserver program and requires immediate patching to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • HP-UX
  • HP-UX family of operating systems

Affected Vendors

  • HP