ikeyman in IBM IBMHSSSB 1.0 sets the CLASSPATH environmental variable to include the user's own CLASSPATH directories before the system's directories, which allows a malicious local user to execute arbitrary code as root via a Trojan horse Ikeyman class.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2001-09-12T04:00:00

Updated: 2024-08-08T05:45:37.382Z

Reserved: 2001-08-31T00:00:00

Link: CVE-2000-1202

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2001-08-31T04:00:00.000

Modified: 2024-11-20T23:34:14.667

Link: CVE-2000-1202

cve-icon Redhat

No data.