Vulnerabilities > CVE-2000-0691 - Symbolic Link Traversal vulnerability in Gert Doering Mgetty 1.1.19/1.1.20/1.1.21
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
PARTIAL Availability impact
NONE Summary
The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Exploit-Db
description | Gert Doering mgetty 1.1.19/1.1.20/1.1.21/1.22.8 Symbolic Link Traversal. CVE-2000-0691. Local exploit for unix platform |
id | EDB-ID:20179 |
last seen | 2016-02-02 |
modified | 2000-08-25 |
published | 2000-08-25 |
reporter | Stan Bubrouski |
source | https://www.exploit-db.com/download/20179/ |
title | Gert Doering mgetty 1.1.19/1.1.20/1.1.21/1.22.8 Symbolic Link Traversal |