all things security
Showing 1 - 1 of 1 RSS Feed

Files

Bournal Insecure Temporary Files
Posted Feb 24, 2010
Site secunia.com

Secunia Research has discovered a security issue in Bournal, which can be exploited by malicious, local users to perform certain actions with escalated privileges. The script uses temporary files in an insecure manner, which can be exploited to e.g. overwrite arbitrary files via symlink attacks when running the update check via the "--hack_the_gibson" parameter. Version 1.4 is affected.

tags | advisory, arbitrary, local
advisories | CVE-2010-0118
MD5 | ac22481ea21fc697a593c333cfaf0aa6
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close