#VU6721 Privilege escalation in ServerProtect for Linux - CVE-2017-9036
Published: May 25, 2017
ServerProtect for Linux
Trend Micro
Description
The disclosed vulnerability allows a local attacker to gain elevated privileges on the target system.
The vulnerability exists due to improper security restrictions set on the quarantine directory by the affected software. A local attacker can write an arbitrary file to any location on the file system and gain root privileges.
Successful exploitation of this vulnerability results in privilege escalation.