HP-UX PHCO_28125 : HP-UX Running System Administration Manager (SAM), Local Elevation of Privilege (HPSBUX01104 SSRT4699 rev.3)

medium Nessus Plugin ID 17085

Synopsis

The remote HP-UX host is missing a security-related patch.

Description

s700_800 11.00 cumulative SAM/ObAM patch :

A potential security vulnerability has been identified with System Administration Manager (SAM) running on HP-UX that may allow local unauthorized privileges.

Solution

Install patch PHCO_28125 or subsequent.

See Also

http://www.nessus.org/u?c12a1e08

Plugin Details

Severity: Medium

ID: 17085

File Name: hpux_PHCO_28125.nasl

Version: 1.12

Type: local

Published: 2/16/2005

Updated: 1/11/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.8

CVSS v2

Risk Factor: Medium

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

CPE: cpe:/o:hp:hp-ux

Required KB Items: Host/local_checks_enabled, Host/HP-UX/version, Host/HP-UX/swlist

Patch Publication Date: 12/6/2004

Reference Information

CVE: CVE-2004-1375

HP: HPSBUX01104, SSRT4699, emr_na-c00896487