CVE-2014-5260 - CERT CVE
ID CVE-2014-5260
Sažetak The (1) mkxmltype and (2) mkdtskel scripts in XML-DT before 0.64 allow local users to overwrite arbitrary files via a symlink attack on a /tmp/_xml_##### temporary file.
Reference
CVSS
Base: 6.3
Impact: 9.2
Exploitability:3.4
Pristup
VektorSloženostAutentikacija
LOCAL MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE COMPLETE COMPLETE
CVSS vektor AV:L/AC:M/Au:N/C:N/I:C/A:C
Zadnje važnije ažuriranje 08-09-2014 - 17:49
Objavljeno 16-08-2014 - 04:39