Local Privilege Escalation via Symlink Attack on CDE ToolTalk Database Server

Local Privilege Escalation via Symlink Attack on CDE ToolTalk Database Server

CVE-2002-0678 · HIGH Severity

AV:L/AC:L/AU:N/C:C/I:C/A:C

CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.

Learn more about our Cis Benchmark Audit For Server Software.