CVE-2008-6558

SCO UnixWare 7.1.4 ReliantHA - Privilege Escalation via RELIANT_PATH Environment Variable

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-6558. PoCs published by qaaz.

AI-analyzed exploit summary This exploit leverages a symlink vulnerability in SCO UnixWare Reliant HA to gain root privileges by manipulating the RELIANT_PATH environment variable and executing a privileged binary. It spawns a shell with elevated privileges if the exploit succeeds.

Description

Untrusted search path vulnerability in (1) hvdisp and (2) rcvm in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges by modifying the RELIANT_PATH environment variable to point to a malicious bin/hvenv program.

Exploits (1)

exploitdb WORKING POC VERIFIED
by qaaz · clocalsco
https://www.exploit-db.com/exploits/5356

This exploit leverages a symlink vulnerability in SCO UnixWare Reliant HA to gain root privileges by manipulating the RELIANT_PATH environment variable and executing a privileged binary. It spawns a shell with elevated privileges if the exploit succeeds.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: SCO UnixWare Reliant HA
No auth needed
Prerequisites: Local access to the target system · Presence of vulnerable Reliant HA binaries (/usr/opt/reliant/bin/hvdisp or /usr/opt/reliant/bin/rcvm)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/28624
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/5356
Patch, Vendor Advisory vendor-advisory x_refsource_sco
ftp://ftp.sco.com/pub/unixware7/714/security/p534850/p534850.txt
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/30921
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/46706
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/46707

Scores

EPSS 0.0087
EPSS Percentile 54.2%

Details

CWE
CWE-20
Status published
Products (2)
sco/unixware 7.1.4
unixware/reliantha 1.1.4
Published Mar 30, 2009
Tracked Since Feb 18, 2026