CNCVE编号:CNCVE-20010823 CVE编号:CAN-2001-0823 安全级别:高 漏洞中文描述: Performance Co-Pilot (PCP) 2.2.1-3早期版本中的pmpost程序允许本地用户通过对PCP日志目录(PCP_LOG_DIR)中的NOTICES文件的symlink攻击来获得权限。 漏洞英文描述: The pmpost program in Performance Co-Pilot (PCP) before 2.2.1-3 allows a local user to gain privileges via a symlink attack on the NOTICES file in the PCP log directory (PCP_LOG_DIR). 漏洞参考: Reference: BUGTRAQ:20010618 pmpost - another nice symlink follower Reference: URL:http://marc.theaimsgroup.com/?l=bugtraq&m=99290754901708&w=2 Reference: BUGTRAQ:20010619 Re: pmpost - another nice symlink follower Reference: URL:http://archives.neo 系统类型:其他 漏洞类型:权限有效性检查错误