MEDIUM · 4.6

CVE-2005-2136

Raritan Dominion SX (DSX) Console Servers DSX16, DSX32, DSX4, DSX8, and DSXA-48 set (1) world-readable permissions for /etc/shadow and (2) world-writable permissions for /bin/busybox, which allows loc...

Vulnerability Description

Raritan Dominion SX (DSX) Console Servers DSX16, DSX32, DSX4, DSX8, and DSXA-48 set (1) world-readable permissions for /etc/shadow and (2) world-writable permissions for /bin/busybox, which allows local users to obtain hashed passwords or execute arbitrary code as other users.

CVSS Score

4.6

MEDIUM

AV:L/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
RaritanDominion Sx4 Firmware-
RaritanDominion Sx4-
RaritanDominion Sx8 Firmware-
RaritanDominion Sx8-
RaritanDominion Sx16 Firmware-
RaritanDominion Sx16-
RaritanDominion Sx32 Firmware2.4.6
RaritanDominion Sx32-
RaritanDominion Sxa-48 Firmware-
RaritanDominion Sxa-48-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2005-2136?

CVE-2005-2136 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Raritan Dominion SX (DSX) Console Servers DSX16, DSX32, DSX4, DSX8, and DSXA-48 set (1) world-readable permissions for /etc/shadow and (2) world-writable permissions for /bin/busybox, which allows loc...

How severe is CVE-2005-2136?

CVE-2005-2136 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-2136?

Check the references section above for vendor advisories and patch information. Affected products include: Raritan Dominion Sx4 Firmware, Raritan Dominion Sx4, Raritan Dominion Sx8 Firmware, Raritan Dominion Sx8, Raritan Dominion Sx16 Firmware.