The Inventory Scout daemon (invscoutd) 1.3.0.0 and 2.0.2 for AIX 4.3.3 and 5.1 allows local users to gain privileges via a symlink attack on a command line argument (log file).  NOTE: this might be related to CVE-2006-5002.
                
            References
                    Configurations
                    Configuration 1 (hide)
            
            
  | 
    
History
                    No history.
Information
                Published : 2004-12-31 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2004-2697
Mitre link : CVE-2004-2697
CVE.ORG link : CVE-2004-2697
JSON object : View
Products Affected
                ibm
- aix
 
CWE
                
                    
                        
                        CWE-362
                        
            Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
