Vulnerabilities > CVE-2006-4248 - Unspecified vulnerability in Acme Labs Thttpd 2.25B

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
acme-labs
nessus

Summary

thttpd on Debian GNU/Linux, and possibly other distributions, allows local users to create or touch arbitrary files via a symlink attack on the start_thttpd temporary file.

Vulnerable Configurations

Part Description Count
Application
Acme_Labs
1

Nessus

  • NASL familyDebian Local Security Checks
    NASL idDEBIAN_DSA-1205.NASL
    descriptionThe original advisory for this issue didn
    last seen2020-06-01
    modified2020-06-02
    plugin id22937
    published2006-11-06
    reporterThis script is Copyright (C) 2006-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/22937
    titleDebian DSA-1205-2 : thttpd - insecure temporary files
  • NASL familyWeb Servers
    NASL idACME_THTTPD_2_26.NASL
    descriptionAccording to its banner, the version of Acme thttpd server running on the remote host is prior to 2.26. It is, therefore, affected by multiple vulnerabilities : - Multiple buffer overflow conditions exist in the htpasswd utility. A local attacker can exploit these, by calling htpasswd and supplying arbitrary commands along with a username to be added to the password file, to bypass required authentication and execute arbitrary programs with elevated privileges. (CVE-2006-1078) - A flaw exists in htpasswd that allows a local attacker to gain privileges via shell metacharacters in a command line argument, which can then be used to execute other commands. (CVE-2006-1079) - An unspecified flaw exists that allows a local attacker to create or touch arbitrary files via a symlink attack on the start_thttpd temporary file. (CVE-2006-4248) Note that Nessus has not tested for these issues but has instead relied only on the application
    last seen2020-06-01
    modified2020-06-02
    plugin id97144
    published2017-02-14
    reporterThis script is Copyright (C) 2017-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/97144
    titleAcme thttpd < 2.26 Multiple Vulnerabilities