ez-ipupdate 3.0.11b7 and earlier creates insecure temporary cache files, which allows local users to conduct unauthorized operations via a symlink attack on the ez-ipupdate.cache file.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2003-12-30 21:00
Updated : 2008-09-05 13:35
NVD link : CVE-2003-0887
Mitre link : CVE-2003-0887
JSON object : View
CWE
Products Affected
angus_mackay
- ez-ipupdate