The Fan-Out Linux and UNIX receiver scripts in Novell Identity Manager (IDM) 3.0.1 allows local users to execute arbitrary commands via unspecified vectors involving certain environment variables and "code injection."
References
Link | Resource |
---|---|
http://secunia.com/advisories/21888 | Vendor Advisory |
http://securitytracker.com/id?1016853 | Third Party Advisory VDB Entry |
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2974421.htm | Patch |
http://www.securityfocus.com/bid/20016 | Patch Third Party Advisory VDB Entry |
http://www.vupen.com/english/advisories/2006/3607 | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2006-09-14 22:07
Updated : 2018-09-27 21:30
NVD link : CVE-2006-4803
Mitre link : CVE-2006-4803
CVE.ORG link : CVE-2006-4803
JSON object : View
Products Affected
netiq
- identity_manager
CWE