First published: Wed Jun 07 2000(Updated: )
The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HPE HP-UX | =10.20 | |
HPE HP-UX | =11.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0515 is considered to be a medium severity vulnerability due to the potential for local users to modify SNMP configurations.
To fix CVE-2000-0515, change the permissions of the snmpd.conf configuration file to prevent world write access.
CVE-2000-0515 affects HP-UX versions 10.20 and 11.00, where the SNMP daemon configuration file is world writable.
The impacts of CVE-2000-0515 may include unauthorized modifications to SNMP configurations and potential privilege escalation for local users.
CVE-2000-0515 is relatively easy to exploit as it involves local access to the system, allowing users to change configurations.