The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2000-09-21T04:00:00

Updated: 2024-08-08T05:28:41.461Z

Reserved: 2000-09-19T00:00:00

Link: CVE-2000-0757

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2000-10-20T04:00:00.000

Modified: 2008-09-05T20:21:48.857

Link: CVE-2000-0757

cve-icon Redhat

No data.