peter bassill · operator
$ cve CVE-2001-1080 JSON

CVE-2001-1080 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 6% (pctl 93)

Patch early

A public exploit exists.

Description

diagrpt in AIX 4.3.x and 5.1 uses the DIAGDATADIR environment variable to find and execute certain programs, which allows local users to gain privileges by modifying the variable to point to a Trojan horse program.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS5.95% — more likely to be exploited than 93% of all CVEs
On CISA KEVno
Public exploityes
Published2001-06-19
Last modified2026-06-16

Affected (1)

VendorProduct
ibmaix

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD