7.2
CVE-2006-4248
- EPSS 0.37%
- Veröffentlicht 31.10.2006 19:07:00
- Zuletzt bearbeitet 16.06.2026 22:28:42
- Quelle security@debian.org
- CVE-Watchlists
- Unerledigt
thttpd on Debian GNU/Linux, and possibly other distributions, allows local users to create or touch arbitrary files via a symlink attack on the start_thttpd temporary file.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.37% | 0.284 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=396277
http://secunia.com/advisories/22712
http://www.debian.org/security/2006/dsa-1205
http://www.securityfocus.com/bid/20891