First published: Tue Nov 28 2006(Updated: )
Untrusted search path vulnerability in (1) WSAdminServer and (2) WSWebServer in Kerio WebSTAR (4D WebSTAR Server Suite) 5.4.2 and earlier allows local users with webstar privileges to gain root privileges via a malicious libucache.dylib helper library in the current working directory.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Kerio WebSTAR | =5.4 | |
Kerio WebSTAR | =5.3 | |
Kerio WebSTAR | =4.0 | |
Kerio WebSTAR | =5.3.1 | |
Kerio WebSTAR | =5.2.3 | |
Kerio WebSTAR | =5.3.4 | |
Kerio WebSTAR | =5.1.3 | |
Kerio WebSTAR | =5.2.4 | |
Kerio WebSTAR | =5.2.1 | |
Kerio WebSTAR | <=5.4.2 | |
Kerio WebSTAR | =5.1.2 | |
Kerio WebSTAR | =5.2 | |
Kerio WebSTAR | =5.2.2 | |
Kerio WebSTAR | =5.3.2 | |
Kerio WebSTAR | =5.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.