CNCVE编号:CNCVE-20010208 CVE编号:CAN-2001-0208 安全级别:中 漏洞中文描述: AppTrack功能被激活时,MicroFocus Cobol 4.1安装的mfaslmf目录和nolicense文件的访问许可不安全,将导致本地用户可以通过修改文件来获得权限。 漏洞英文描述: MicroFocus Cobol 4.1, with the AppTrack feature enabled, installs the mfaslmf directory and the nolicense file with insecure permissions, which allows local users to gain privileges by modifying files. 漏洞参考: Reference: BUGTRAQ:20010211 Security Hole in Microfocus Cobol Reference: URL:http://archives.neohapsis.com/archives/bugtraq/2001-02/0205.html Reference: BID:2359 Reference: URL:http://www.securityfocus.com/bid/2359 系统类型:其他 漏洞类型:配置错误