Vulnerabilities > CVE-2005-1632 - Unspecified vulnerability in Tavis Rudd Cheetah 0.9.15/0.9.16

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
tavis-rudd

Summary

Cheetah 0.9.15 and 0.9.16 searches the /tmp directory for modules before using the paths in the PYTHONPATH variable, which allows local users to execute arbitrary code via a malicious module in /tmp/.

Vulnerable Configurations

Part Description Count
Application
Tavis_Rudd
2