Vulnerability Details CVE-2004-2686
Directory traversal vulnerability in the vfs_getvfssw function in Solaris 2.6, 7, 8, and 9 allows local users to load arbitrary kernel modules via crafted (1) mount or (2) sysfs system calls. NOTE: this might be the same issue as CVE-2004-1767, but there are insufficient details to be sure.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.8%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2004-2686
-
cpe:2.3:o:sun:solaris:2.6
-
cpe:2.3:o:sun:solaris:7.0
-
cpe:2.3:o:sun:solaris:8.0
-
cpe:2.3:o:sun:solaris:9.0
-
-
-
-