HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2000-04-18T04:00:00

Updated: 2024-08-08T05:05:54.072Z

Reserved: 2000-02-23T00:00:00

Link: CVE-2000-0159

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2000-02-17T05:00:00.000

Modified: 2023-11-07T01:55:13.580

Link: CVE-2000-0159

cve-icon Redhat

No data.