4.9
CVE-2007-5718
- EPSS 0.03%
- Veröffentlicht 30.10.2007 21:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
vobcopy 0.5.14 allows local users to append data to an arbitrary file, or create an arbitrary new file, via a symlink attack on the (1) /tmp/vobcopy.bla or (2) /tmp/vobcopy_0.5.14.log temporary file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Vobcopy ≫ Vobcopy Version0.5.14
Debian ≫ Debian Linux Version3.1
Debian ≫ Debian Linux Version3.1 Editionalpha
Debian ≫ Debian Linux Version3.1 Editionamd64
Debian ≫ Debian Linux Version3.1 Editionarm
Debian ≫ Debian Linux Version3.1 Editionhppa
Debian ≫ Debian Linux Version3.1 Editionia-32
Debian ≫ Debian Linux Version3.1 Editionia-64
Debian ≫ Debian Linux Version3.1 Editionm68k
Debian ≫ Debian Linux Version3.1 Editionmips
Debian ≫ Debian Linux Version3.1 Editionmipsel
Debian ≫ Debian Linux Version3.1 Editionppc
Debian ≫ Debian Linux Version3.1 Editions-390
Debian ≫ Debian Linux Version3.1 Editionsparc
Debian ≫ Debian Linux Version3.1 Updater1
Debian ≫ Debian Linux Version3.2.4
Debian ≫ Debian Linux Version4.0
Debian ≫ Debian Linux Version4.0 Editionalpha
Debian ≫ Debian Linux Version4.0 Editionamd64
Debian ≫ Debian Linux Version4.0 Editionarm
Debian ≫ Debian Linux Version4.0 Editionhppa
Debian ≫ Debian Linux Version4.0 Editionia-32
Debian ≫ Debian Linux Version4.0 Editionia-64
Debian ≫ Debian Linux Version4.0 Editionm68k
Debian ≫ Debian Linux Version4.0 Editionmips
Debian ≫ Debian Linux Version4.0 Editionmipsel
Debian ≫ Debian Linux Version4.0 Editionpowerpc
Debian ≫ Debian Linux Version4.0 Editions-390
Debian ≫ Debian Linux Version4.0 Editionsparc
Debian ≫ Debian Linux Version3.1 Editionalpha
Debian ≫ Debian Linux Version3.1 Editionamd64
Debian ≫ Debian Linux Version3.1 Editionarm
Debian ≫ Debian Linux Version3.1 Editionhppa
Debian ≫ Debian Linux Version3.1 Editionia-32
Debian ≫ Debian Linux Version3.1 Editionia-64
Debian ≫ Debian Linux Version3.1 Editionm68k
Debian ≫ Debian Linux Version3.1 Editionmips
Debian ≫ Debian Linux Version3.1 Editionmipsel
Debian ≫ Debian Linux Version3.1 Editionppc
Debian ≫ Debian Linux Version3.1 Editions-390
Debian ≫ Debian Linux Version3.1 Editionsparc
Debian ≫ Debian Linux Version3.1 Updater1
Debian ≫ Debian Linux Version3.2.4
Debian ≫ Debian Linux Version4.0
Debian ≫ Debian Linux Version4.0 Editionalpha
Debian ≫ Debian Linux Version4.0 Editionamd64
Debian ≫ Debian Linux Version4.0 Editionarm
Debian ≫ Debian Linux Version4.0 Editionhppa
Debian ≫ Debian Linux Version4.0 Editionia-32
Debian ≫ Debian Linux Version4.0 Editionia-64
Debian ≫ Debian Linux Version4.0 Editionm68k
Debian ≫ Debian Linux Version4.0 Editionmips
Debian ≫ Debian Linux Version4.0 Editionmipsel
Debian ≫ Debian Linux Version4.0 Editionpowerpc
Debian ≫ Debian Linux Version4.0 Editions-390
Debian ≫ Debian Linux Version4.0 Editionsparc
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.03% | 0.061 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.9 | 3.9 | 6.9 |
AV:L/AC:L/Au:N/C:N/I:C/A:N
|
CWE-59 Improper Link Resolution Before File Access ('Link Following')
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.