Vulnerabilities > CVE-2002-0210 - Symbolic Link vulnerability in Tolis Group BRU 17.0

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
tolis-group
exploit available

Summary

setlicense for TOLIS Group Backup and Restore Utility (BRU) 17.0 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/brutest.$$ temporary file.

Vulnerable Configurations

Part Description Count
Application
Tolis_Group
1

Exploit-Db

descriptionBRU 17.0 SetLicense Script Insecure Temporary File Symbolic Link Vulnerability. CVE-2002-0210. Local exploit for linux platform
idEDB-ID:21247
last seen2016-02-02
modified2002-01-26
published2002-01-26
reporterAndrew Griffiths
sourcehttps://www.exploit-db.com/download/21247/
titleBRU 17.0 SetLicense Script Insecure Temporary File Symbolic Link Vulnerability