Vulnerability Description
HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Hp-Ux | 11.00 |
References
- http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=2
- http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=2
FAQ
What is CVE-2000-0159?
CVE-2000-0159 is a vulnerability with a CVSS score of 7.5 (HIGH). HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
How severe is CVE-2000-0159?
CVE-2000-0159 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-0159?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Hp-Ux.