CVE-2008-6559
SCO ReliantHA 1.1.4 - Local Privilege Escalation via mcd -d Argument
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6559. PoCs published by qaaz.
AI-analyzed exploit summary This exploit leverages a symlink vulnerability in SCO UnixWare's Merge mcd binary to achieve local privilege escalation by manipulating the PATH environment variable and creating a malicious symlink to execute arbitrary code with root privileges.
Description
Merge mcd in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges via a crafted -d argument that contains .. (dot dot) sequences that point to a directory containing a file whose name includes shell metacharacters.
Exploits (1)
This exploit leverages a symlink vulnerability in SCO UnixWare's Merge mcd binary to achieve local privilege escalation by manipulating the PATH environment variable and creating a malicious symlink to execute arbitrary code with root privileges.