Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

lv Configuration File Privilege Escalation Vulnerability

The lv multilingual file viewer reads various options from a configuration file located in the current directory. Since this file is accessible by all users, it could be replaced by any unprivileged user. lv options may be used to execute commands, which would be run in the security context of the current user.







 

Privacy Statement
Copyright 2008, SecurityFocus