CVE-2008-0585

medium

Description

sysmgt.websm.webaccess in IBM AIX 5.2 and 5.3 has world writable permissions for unspecified WebSM Remote Client files, which allows local users to "alter the behavior of" this client by overwriting these files.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/39906

http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4066

http://www.vupen.com/english/advisories/2008/0261

http://www.securityfocus.com/bid/27433

http://www.ibm.com/support/docview.wss?uid=isg1IY97257

http://secunia.com/advisories/28609

Details

Source: Mitre, NVD

Published: 2008-02-05

Updated: 2025-04-09

Risk Information

CVSS v2

Base Score: 6.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:N

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Severity: Medium

EPSS

EPSS: 0.00048