The close_connections function in /opt/cma/bin/clear_keys.pl in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1.1 allows local users to gain privileges via shell metacharacters in the second argument.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2013-09-10T10:00:00Z

Updated: 2024-09-16T19:04:18.463Z

Reserved: 2013-07-29T00:00:00Z

Link: CVE-2013-4984

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-09-10T11:28:41.073

Modified: 2016-11-08T14:00:38.490

Link: CVE-2013-4984

cve-icon Redhat

No data.