First published: Fri Oct 20 2000(Updated: )
uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cfg configuration file, which allows local users to execute arbitrary commands by modifying the temporary file before it is moved.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CA ARCserve Backup for Laptops and Desktops | =6.63_linux |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0781 is considered to have a moderate severity level due to its ability to allow local users to execute arbitrary commands.
To fix CVE-2000-0781, ensure proper access controls and validation checks for temporary files in the application.
CVE-2000-0781 affects users of Broadcom BrightStor ARCserve Backup version 6.63 on Linux.
CVE-2000-0781 is a local privilege escalation vulnerability.
No, CVE-2000-0781 can only be exploited by local users who have access to the affected system.