Exploitation Summary
EIP tracks 1 public exploit for CVE-2000-1127. PoCs published by J.A. Gutierrez.
AI-analyzed exploit summary This exploit leverages a symbolic link vulnerability in HP-UX's registrar service to change file permissions, allowing local users to read arbitrary files. It involves manipulating the registrar.log file to create a world-readable symlink to a target file.
Description
registrar in the HP resource monitor service allows local users to read and modify arbitrary files by renaming the original registrar.log log file and creating a symbolic link to the target file, to which registrar appends log information and sets the permissions to be world readable.
Exploits (1)
This exploit leverages a symbolic link vulnerability in HP-UX's registrar service to change file permissions, allowing local users to read arbitrary files. It involves manipulating the registrar.log file to create a world-readable symlink to a target file.