20001102 Mantrap By Recourse Technologies - Fate Advisory (11-01-00)mailing list
http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html CVE-2000-1144
ManTrap 1.6.1 - Root Directory Inode Disclosure
Record summary
CVE-2000-1144 has a selected CVSS score of 2.1; EIP currently links 1 catalogued exploit.
Description
Recourse ManTrap 1.6 sets up a chroot environment to hide the fact that it is running, but the inode number for the resulting "/" file system is higher than normal, which allows attackers to determine that they are in a chroot environment.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBManTrap 1.6.1 - Root Directory Inode DisclosureExploitDB exploitby f8labsNot analyzed1 file
References
620001107 Vendor Response Re: Mantrap Advisory Vendor Followup - Fate Research Labsmailing list
http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html 20001105 Mantrap Advisory Vendor Followup - Fate Research Labsmailing list
http://marc.info/?l=bugtraq&m=97349791405580&w=2 1909vdb entry
http://www.securityfocus.com/bid/1909 mantrap-inode-disclosure(5472)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/5472 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2000-1144