RSS   Vulnerabilities for 'Lynis'   RSS

2017-06-08
 
CVE-2017-8108

CWE-59
 

 
Unspecified tests in Lynis before 2.5.0 allow local users to write to arbitrary files or possibly gain privileges via a symlink attack on a temporary file.

 
2014-06-08
 
CVE-2014-3986

CWE-59
 

 
include/tests_webservers in Lynis before 1.5.5 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/lynis.*.unsorted file with an easily determined name.

 
 
CVE-2014-3982

CWE-59
 

 
include/tests_webservers in Lynis before 1.5.5 on AIX allows local users to overwrite arbitrary files via a symlink attack on a /tmp/lynis.##### file.

 


Copyright 2024, cxsecurity.com

 

Back to Top