sylprint.pl in claws mail tools (claws-mail-tools) allows local users to overwrite arbitrary files via a symlink attack on the sylprint.[USER].[PID] temporary file.
References
Configurations
Information
Published : 2007-12-03 16:46
Updated : 2008-11-14 23:03
NVD link : CVE-2007-6208
Mitre link : CVE-2007-6208
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
claws_mail
- claws_mail_tools