Citadel/UX Insecure File Permissions Vulnerability

Citadel/UX has been reported prone to a weak file permissions vulnerability. The issue is reported to present itself because Citadel/UX sets insecure permissions on the "data" directory and files contained within, during installation.

As a direct result of this, any user who has interactive shell access to a system may disclose potentially sensitive data that is contained in the Citadel/UX database and data files.


 

Privacy Statement
Copyright 2010, SecurityFocus