Vulnerabilities > CVE-2002-0296 - Symbolic Link vulnerability in Tarantella Enterprise 3

047910
CVSS 1.2 - LOW
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
local
high complexity
tarantella
exploit available

Summary

The installation of Tarantella Enterprise 3 allows local users to overwrite arbitrary files via a symlink attack on the "spinning" temporary file.

Exploit-Db

descriptionTarantella Enterprise 3 Symbolic Link Vulnerability. CVE-2002-0296 . Local exploit for unix platform
idEDB-ID:21290
last seen2016-02-02
modified2002-02-19
published2002-02-19
reporterLarry W. Cashdollar
sourcehttps://www.exploit-db.com/download/21290/
titleTarantella Enterprise 3 Symbolic Link Vulnerability