[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2005-1740Date: (C)2005-05-24   (M)2023-12-22


fixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, which allows local users to modify the contents of those files to execute arbitrary commands, or overwrite arbitrary files via a symlink attack.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
SECTRACK-1014039
BID-13715
SECUNIA-15471
OSVDB-16778
SECUNIA-16999
SECUNIA-17135
SECUNIA-18635
ADV-2005-0598
GLSA-200505-18
MDKSA-2006:025
RHSA-2005:373
RHSA-2005:395
http://www.zataz.net/adviso/net-snmp-05182005.txt
oval:org.mitre.oval:def:11659

CPE    8
cpe:/a:net-snmp:net-snmp:5.0.9
cpe:/a:net-snmp:net-snmp:5.0.8
cpe:/a:net-snmp:net-snmp:5.0.7
cpe:/a:net-snmp:net-snmp:5.0.6
...
OVAL    2
oval:org.secpod.oval:def:1000046
oval:org.secpod.oval:def:1000160

© SecPod Technologies