run.cgi in Webmin 0.80 and 0.88 creates temporary files with world-writable permissions, which allows local users to execute arbitrary commands.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/vulnwatch/2001-q4/0015.html | Vendor Advisory |
http://www.securiteam.com/unixfocus/6R00M0K2UC.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-03T16:22:34
Updated: 2022-10-03T16:22:34
Reserved: 2022-10-03T00:00:00
Link: CVE-2001-1530
JSON object: View
NVD Information
Status : Analyzed
Published: 2001-12-31T05:00:00.000
Modified: 2008-09-05T20:26:47.373
Link: CVE-2001-1530
JSON object: View
Redhat Information
No data.
CWE