CVE-2010-1347
Last modified
CVE-2010-1347 is a vulnerability of currently unknown severity. Director Agent 6.1 before 6.1.2.3 in IBM Systems Director on AIX and Linux uses incorrect permissions for the (1) diruninstall and (2) opt/ibm/director/bin/wcitinst scripts, which allows local users to gain privileges by executing these scripts.. EPSS estimates a 0.35% chance of exploitation in the next 30 days.
Description
Director Agent 6.1 before 6.1.2.3 in IBM Systems Director on AIX and Linux uses incorrect permissions for the (1) diruninstall and (2) opt/ibm/director/bin/wcitinst scripts, which allows local users to gain privileges by executing these scripts.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Director Agent | 6.1 |
| Ibm | Director Agent | 6.1.2 |
References
- http://secunia.com/advisories/39194Vendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=isg1PM08236Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0830Vendor Advisory
- http://secunia.com/advisories/39194Vendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=isg1PM08236Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0830Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-1347?
How severe is CVE-2010-1347?
How do I fix CVE-2010-1347?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2010
- CVE-2010-1341SQL injection vulnerability in index.php in Systemsoftware C…
- CVE-2010-1342Multiple PHP remote file inclusion vulnerabilities in Direct…
- CVE-2010-1343SQL injection vulnerability in photo.php in SiteX 0.7.4 beta…
- CVE-2010-1344SQL injection vulnerability in the Cookex Agency CKForms (co…
- CVE-2010-1345Directory traversal vulnerability in the Cookex Agency CKFor…
- CVE-2010-1346SQL injection vulnerability in admin/login.php in Mini CMS R…
- CVE-2010-1348Unspecified vulnerability in the login process in IBM WebSph…
- CVE-2010-1349Integer overflow in Opera 10.10 through 10.50 allows remote …
- CVE-2010-1350SQL injection vulnerability in the JP Jobs (com_jp_jobs) com…
- CVE-2010-1351Multiple PHP remote file inclusion vulnerabilities in Nodesf…
- CVE-2010-1352Directory traversal vulnerability in the JOOFORGE Jutebox (c…
- CVE-2010-1353Directory traversal vulnerability in the LoginBox Pro (com_l…
Are you affected by CVE-2010-1347?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
