CVE-2010-2449 - CERT CVE
ID CVE-2010-2449
Sažetak Gource through 0.26 logs to a predictable file name (/tmp/gource-$UID.tmp), enabling attackers to overwrite an arbitrary file via a symlink attack.
Reference
CVSS
Base: 5.5
Impact: 4.9
Exploitability:8.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL PARTIAL
CVSS vektor AV:N/AC:L/Au:S/C:N/I:P/A:P
Zadnje važnije ažuriranje 09-11-2019 - 22:56
Objavljeno 07-11-2019 - 20:15