Exploitation Summary
EIP tracks 1 public exploit for CVE-2002-0296. PoCs published by Larry W. Cashdollar.
AI-analyzed exploit summary This exploit leverages a symbolic link vulnerability in Tarantella Enterprise 3's installation process to elevate privileges. By creating a symlink from /tmp/spinning to /etc/passwd, an attacker can make /etc/passwd world-writable during installation, allowing them to add a root user.
Description
The installation of Tarantella Enterprise 3 allows local users to overwrite arbitrary files via a symlink attack on the "spinning" temporary file.
Exploits (1)
This exploit leverages a symbolic link vulnerability in Tarantella Enterprise 3's installation process to elevate privileges. By creating a symlink from /tmp/spinning to /etc/passwd, an attacker can make /etc/passwd world-writable during installation, allowing them to add a root user.