AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-1054

HIGH · CVSS 7.2 EPSS 0.95%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-01-10 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2004-1054
Severity
HIGH
CVSS
7.2
EPSS
0.95%

Original NVD Description

Untrusted execution path vulnerability in invscout in IBM AIX 5.1.0, 5.2.0, and 5.3.0 allows local users to gain privileges by modifying the PATH environment variable to point to a malicious "uname" program, which is executed from lsvpd after lsvpd has been invoked by invscout.