-Advisory- ~ -Thu Mar 16 21:05:25 EST 2006- ~ Local Privilege Escalation Vulnerability in ISC INN 8=============D~~~~~~~~~~~~ I. Background 8=============D~~~~~~~~~~~~ This vulnerability had no background commentary regarding the problem. 8=============D~~~~~~~~~~~~ II. Description 8=============D~~~~~~~~~~~~ ISC INN incorrectly validates user input, making privilege escalation possible. 8=============D~~~~~~~~~~~~ III. Vendor Response 8=============D~~~~~~~~~~~~ ISC INN had offered no identified information. 8=============D~~~~~~~~~~~~ Appendix A Vendor Information 8=============D~~~~~~~~~~~~ http://www.isc.org/index.pl?/sw/inn/ 8=============D~~~~~~~~~~~~ Contact 8=============D~~~~~~~~~~~~ Chris Adams [EMAIL PROTECTED] GSAE CCE CEH SSP-CNSA GWAS SSCP _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/