Vulnerability Description
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable permissions, which allows local users to read sensitive information and possibly gain privileges. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Emc | Networker | 6.1 |
References
- http://online.securityfocus.com/archive/1/249420Vendor Advisory
- http://www.iss.net/security_center/static/7897.phpVendor Advisory
- http://www.securityfocus.com/bid/3840
- http://online.securityfocus.com/archive/1/249420Vendor Advisory
- http://www.iss.net/security_center/static/7897.phpVendor Advisory
- http://www.securityfocus.com/bid/3840
FAQ
What is CVE-2002-0113?
CVE-2002-0113 is a vulnerability with a CVSS score of 4.6 (MEDIUM). EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable permissions, which allows local users to read sensitive information and possibly g...
How severe is CVE-2002-0113?
CVE-2002-0113 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-0113?
Check the references section above for vendor advisories and patch information. Affected products include: Emc Networker.