First published: Sun Feb 20 2000(Updated: )
The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Solaris Isp Server | =2.0 | |
=2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0164 has a medium level of severity as it allows local users to read password information.
To fix CVE-2000-0164, change the file permissions to restrict access to sensitive files such as password files.
CVE-2000-0164 affects installations of Sun Internet Mail Server (SIMS) version 2.0 on Solaris systems.
CVE-2000-0164 is a local file permission issue that creates a world-readable file containing user passwords.
Yes, local users can exploit CVE-2000-0164 to obtain passwords due to the world-readable file permissions.