sysmgt.websm.webaccess in IBM AIX 5.2 and 5.3 has world writable permissions for unspecified WebSM Remote Client files, which allows local users to "alter the behavior of" this client by overwriting these files.
https://exchange.xforce.ibmcloud.com/vulnerabilities/39906
http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4066
http://www.vupen.com/english/advisories/2008/0261
http://www.securityfocus.com/bid/27433