rlmadmin RADIUS management utility in Merit AAA Server 3.8M, 5.01, and possibly other versions, allows local users to read arbitrary files via a symlink attack on the rlmadmin.help file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Aaa_radius_server | Merit | 5.01 | 5.01 |
Aaa_radius_server | Merit | 3.8m | 3.8m |