CORE IMPACT v10.5 - Exploits Update (Fri Jul 23 2010)
Sudoedit Privilege Escalation Exploit Update
Exploits/Local [Solaris]
Fri Jul 23 2010
This module exploits a missing verification of the path in the command "sudoedit", provided by the sudo package. This can be exploited to execute any command as root including a shell, allowing an unprivileged process to elevate its privileges to root. This update adds OSX 10.6 (Snow Leopard) as supported target.
Exploits Vulnerabiltiy: CVE-2010-0426











