wyrd 1.4.3b allows local users to overwrite arbitrary files via a symlink attack on the wyrd-tmp.[USERID] temporary file.
References
Configurations
Information
Published : 2008-02-18 16:00
Updated : 2008-09-05 14:36
NVD link : CVE-2008-0806
Mitre link : CVE-2008-0806
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
paul_pelzl
- wyrd