Vulnerabilities > CVE-2004-2502 - Symbolic Link vulnerability in IM-Switch Insecure Temporary File Handling

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
local
low complexity
im-switch
exploit available

Summary

im-switch before 11.4-46.1 in Fedora Core 2 allows local users to overwrite arbitrary files via a symlink attack on the imswitcher[PID] temporary file.

Vulnerable Configurations

Part Description Count
Application
Im-Switch
1

Exploit-Db

descriptionIM-Switch Insecure Temporary File Handling Symbolic Link Vulnerability. CVE-2004-2502. Local exploit for linux platform
idEDB-ID:24278
last seen2016-02-02
modified2004-07-13
published2004-07-13
reporterSEKINE Tatsuo
sourcehttps://www.exploit-db.com/download/24278/
titleIM-Switch Insecure Temporary File Handling Symbolic Link Vulnerability