The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-12-27 18:03
Updated : 2018-10-19 08:41
NVD link : CVE-2005-4534
Mitre link : CVE-2005-4534
JSON object : View
CWE
Products Affected
mozilla
- bugzilla