积极预防 及时发现
快速响应 力保恢复
iCal 2.1 Patch 2安装许多带有全局可写的文件,这样允许本地用户通过将特洛伊木马代替ip...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-20001072 CVE编号:CVE-2000-1072 安全级别:中 漏洞中文描述: iCal 2.1 Patch 2安装许多带有全局可写的文件,这样允许本地用户通过将特洛伊木马代替iplncal.sh程序来修改iCal配置以及执行任意命令。 漏洞英文描述: iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal configuration and execute arbitrary commands by replacing the iplncal.sh program with a Trojan horse. 漏洞参考: 系统类型:其他 漏洞类型:其他