CVE-2002-2363: High severity HPE HP-UX vulnerability
Published Dec 31, 2002
·Updated
VJE.VJE-RUN in HP-UX 11.00 adds bin to /etc/PATH, which could allow local users to gain privileges.
Affected Software
1 affected component
HPE HP-UX=11.00
Remediation
Patch Available
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityWeaknessAffected Software
Oct 29, 2007
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2363?
CVE-2002-2363 is considered a high-severity vulnerability due to the potential privilege escalation it allows for local users.
2
How do I fix CVE-2002-2363?
To fix CVE-2002-2363, remove the insecure paths added to /etc/PATH and ensure proper permissions are set for the affected binaries.
3
Who is affected by CVE-2002-2363?
CVE-2002-2363 affects local users on HP-UX version 11.00 due to the improper configuration of the PATH environment variable.
4
What systems are vulnerable to CVE-2002-2363?
CVE-2002-2363 specifically affects systems running HP-UX 11.00.
5
Can CVE-2002-2363 be exploited remotely?
CVE-2002-2363 cannot be exploited remotely as it requires local user access to the affected system.