Field Assessment
AI analysis pending.
CVE
CVE-2012-4845
Severity
MEDIUM
CVSS
6.8
EPSS
1.62%
Original Filing — NVD Description
The FTP client in IBM AIX 6.1 and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, does not properly manage privileges in an RBAC environment, which allows attackers to bypass intended file-read restrictions by leveraging the setuid installation of the ftp executable file.