CVE-2008-3946: Medium severity openvms vulnerability
Published Sep 5, 2008
·Updated
The finger client in HP TCP/IP Services for OpenVMS 5.x allows local users to read arbitrary files via a link corresponding to a (1) .plan or (2) .project file.
Affected Software
1 affected component
OpenVMS=5
Event History
Sep 5, 2008
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3946?
CVE-2008-3946 is considered a low severity vulnerability that allows local users to read arbitrary files.
2
How do I fix CVE-2008-3946?
To fix CVE-2008-3946, ensure that permissions for .plan and .project files are restricted to prevent unauthorized access.
3
Who is affected by CVE-2008-3946?
CVE-2008-3946 affects local users of HP TCP/IP Services for OpenVMS version 5.x.
4
What kind of files can be accessed due to CVE-2008-3946?
CVE-2008-3946 allows unauthorized access to local .plan and .project files.
5
Is CVE-2008-3946 a remote vulnerability?
No, CVE-2008-3946 is a local vulnerability that requires local user access to exploit.