Vulnerability Description
registrar in the HP resource monitor service allows local users to read and modify arbitrary files by renaming the original registrar.log log file and creating a symbolic link to the target file, to which registrar appends log information and sets the permissions to be world readable.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Hp-Ux | 10.20 |
References
- http://www.securityfocus.com/archive/1/143845ExploitPatchVendor Advisory
- http://www.securityfocus.com/bid/1919ExploitPatchVendor Advisory
- http://www.securityfocus.com/archive/1/143845ExploitPatchVendor Advisory
- http://www.securityfocus.com/bid/1919ExploitPatchVendor Advisory
FAQ
What is CVE-2000-1127?
CVE-2000-1127 is a vulnerability with a CVSS score of 3.6 (LOW). registrar in the HP resource monitor service allows local users to read and modify arbitrary files by renaming the original registrar.log log file and creating a symbolic link to the target file, to w...
How severe is CVE-2000-1127?
CVE-2000-1127 has been rated LOW with a CVSS base score of 3.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-1127?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Hp-Ux.