Record summary

CVE-2006-1183 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.

Description

The Ubuntu 5.10 installer does not properly clear passwords from the installer log file (questions.dat), and leaves the log file with world-readable permissions, which allows local users to gain privileges.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBUbuntu 5.10 Installer - Password DisclosureExploitDB exploitby Kristian HermansenNot analyzed1 file
ExploitDB

PoC details

References

9