CVE
- Id
- 5960
- CVE No.
- CVE-2002-1576
- Status
- Candidate
- Description
- lserver in SAP DB 7.3 and earlier uses the current working directory to find and execute the lserversrv program, which allows local users to gain privileges with a malicious lserversrv that is called from a directory that has a symlink to the lserver program.
- Phase
- Assigned (20040315)
- Votes
- None (candidate not yet proposed)
- Comments