rrdedit in netmrg 0.20 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/*.xml and (2) /tmp/*.backup temporary files.
References
Configurations
Information
Published : 2008-11-06 07:55
Updated : 2017-08-07 18:33
NVD link : CVE-2008-4974
Mitre link : CVE-2008-4974
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
netmrg
- netmrg