IBM Informix Dynamic Server 10.UC3RC1 Trial for Linux and possibly other versions creates /tmp/installserver.txt with insecure permissions, which allows local users to append data to arbitrary files via a symlink attack.
References
Configurations
Information
Published : 2006-10-04 21:04
Updated : 2018-10-17 14:41
NVD link : CVE-2006-5163
Mitre link : CVE-2006-5163
JSON object : View
CWE
Products Affected
ibm
- informix_dynamic_server