CVE-2009-4607 Information
Feb 14, 2021
cve
Description
The command line interface in Overland Storage Snap Server 410 with GuardianOS 5.1.041 runs the \less\ utility with a higher-privileged uid than the CLI user and without sufficient restriction on shell escapes which allows local users to gain privileges using the !\ character within less to access a privileged shell.
Reference
http://www.juniper.net/security/auto/vulnerabilities/vuln36739.html http://www.securityfocus.com/archive/1/507318/100/0/threaded http://www.securityfocus.com/bid/36739 https://exchange.xforce.ibmcloud.com/vulnerabilities/53881
Share on: