2 results (0.003 seconds)

CVSS: 4.6EPSS: 0%CPEs: 2EXPL: 0

sup 1.8 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files. sup 1.8 y anteriores no crea ficheros temporales de manera apropiada, lo que permite a usuarios locales sobreescribir ficheros arbitrarios. • http://www.debian.org/security/2003/dsa-353 •

CVSS: 7.2EPSS: 0%CPEs: 1EXPL: 0

cvsupd.sh in CVSup 1.2 allows local users to overwrite arbitrary files and gain privileges via a symlink attack on /var/tmp/cvsupd.out. • http://archives.neohapsis.com/archives/freebsd/2002-11/0011.html http://www.iss.net/security_center/static/10610.php http://www.securityfocus.com/bid/6150 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •