Multiple directory traversal vulnerabilities in AIX 5.3 ML03 allow local users to determine the existence of files and read partial contents of certain files via a .. (dot dot) in the argument to (1) getCommand.new (aka getCommand) and (2) getShell, a different vulnerability than CVE-2005-4273.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Aix | Ibm | 5.3_ml03 (including) | 5.3_ml03 (including) |