Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2000-05-09 21:00
Updated : 2008-09-10 12:04
NVD link : CVE-2000-0409
Mitre link : CVE-2000-0409
JSON object : View
CWE
Products Affected
netscape
- communicator