First published: Fri May 03 2002(Updated: )
Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Alcatel-Lucent OmniPCX | =4400 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0295 is considered a medium severity vulnerability due to its potential for privilege escalation.
To fix CVE-2002-0295, ensure that files installed by the Alcatel OmniPCX 4400 do not have world-writable permissions.
CVE-2002-0295 affects the Alcatel-Lucent OmniPCX 4400 system.
Local users can exploit CVE-2002-0295 to reconfigure the system or gain elevated privileges.
A potential workaround for CVE-2002-0295 is to review and restrict permissions on affected files.