SpectroSERVER in Cabletron Spectrum Enterprise Manager 5.0 installs a directory tree with insecure permissions, which allows local users to replace a privileged executable (processd) with a Trojan horse, facilitating a root or Administrator compromise.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Spectrum_enterprise_manager | Cabletron | 5.0 (including) | 5.0 (including) |