6.2

CVE-2003-0036

Exploit
ml85p, as included in the printer-drivers package for Mandrake Linux, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable filenames of the form "mlg85p%d".
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.46% 0.362
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.2 1.9 10
AV:L/AC:H/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0029.html
http://www.idefense.com/advisory/01.21.03.txt
Patch
Vendor Advisory
Exploit
http://www.mandriva.com/security/advisories?name=MDKSA-2003:010
http://www.securitytracker.com/id?1005959
http://www.securityfocus.com/archive/1/307608/30/26270/threaded