Vulnerability Description
The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Nortel | Optivity Net Architect | 2.0 |
References
FAQ
What is CVE-2000-0009?
CVE-2000-0009 is a vulnerability with a CVSS score of 7.2 (HIGH). The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands.
How severe is CVE-2000-0009?
CVE-2000-0009 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-0009?
Check the references section above for vendor advisories and patch information. Affected products include: Nortel Optivity Net Architect.