CVE-2014-0899: Medium severity IBM AIX vulnerability
ftpd in IBM AIX 7.1.1 before SP10 and 7.1.2 before SP5, when a Workload Partition (aka WPAR) for AIX 5.2 or 5.3 is used, allows remote authenticated users to bypass intended permission settings and modify arbitrary files via FTP commands.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0899?
CVE-2014-0899 is classified as having a medium severity level due to the potential for authenticated remote users to bypass permissions.
How do I fix CVE-2014-0899?
To fix CVE-2014-0899, apply the appropriate IBM AIX updates to version 7.1.1 SP10 or later, or 7.1.2 SP5 or later.
Who is affected by CVE-2014-0899?
CVE-2014-0899 affects users of IBM AIX versions 7.1.1 before SP10 and 7.1.2 before SP5 using Workload Partitions for AIX 5.2 or 5.3.
What types of attacks are possible with CVE-2014-0899?
CVE-2014-0899 allows remote authenticated users to modify arbitrary files, potentially leading to data compromise or system integrity issues.
When was CVE-2014-0899 disclosed?
CVE-2014-0899 was disclosed in 2014, specifically detailing vulnerabilities in specific versions of IBM AIX.