CVE-2000-1127: Low severity HPE HP-UX vulnerability
Published Dec 19, 2000
·Updated
registrar in the HP resource monitor service allows local users to read and modify arbitrary files by renaming the original registrar.log log file and creating a symbolic link to the target file, to which registrar appends log information and sets the permissions to be world readable.
Affected Software
1 affected component
HPE HP-UX=10.20
Remediation
Patch Available
Patch Available
Event History
Dec 19, 2000
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1127?
CVE-2000-1127 is classified as a local privilege escalation vulnerability.
2
How do I fix CVE-2000-1127?
To mitigate CVE-2000-1127, restrict permissions on the registrar.log file to prevent unauthorized access.
3
What systems are affected by CVE-2000-1127?
CVE-2000-1127 affects HP-UX version 10.20.
4
Can CVE-2000-1127 be exploited remotely?
No, CVE-2000-1127 requires local access to exploit.
5
What are the potential impacts of CVE-2000-1127?
Exploitation of CVE-2000-1127 can lead to unauthorized access to sensitive files.