RSS   Vulnerabilities for 'CRIP'   RSS

2008-12-08
 
CVE-2008-5376

CWE-59
 

 
editcomment in crip 3.7 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/*.tag.tmp temporary file.

 
2005-07-05
 
CVE-2005-0393

 

 
The helper scripts for crip 3.5 do not properly use temporary files, which allows local users to have an unknown impact with unknown attack vectors.

 


Copyright 2024, cxsecurity.com

 

Back to Top