Vulnerabilities > Improper Link Resolution Before File Access ('Link Following')

DATE CVE VULNERABILITY TITLE RISK
2008-11-05 CVE-2008-4958 Link Following vulnerability in Alejandro Garrido Mota Gdrae 0.1
gdrae in gdrae 0.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/gdrae/palabra temporary file.
6.9
2008-11-05 CVE-2008-4957 Link Following vulnerability in Gccxml 0.9.0
find_flags in Kitware GCC-XML (gccxml) 0.9.0 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/*.cxx temporary file.
local
gccxml CWE-59
6.9
2008-11-05 CVE-2008-4956 Link Following vulnerability in Firewallbuilder Fwbuilder 2.1.19
fwb_install in fwbuilder 2.1.19 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/ssh-agent.##### temporary file.
6.9
2008-11-05 CVE-2008-4955 Link Following vulnerability in Duncan Webb Freevo 1.8.1
freevo.real in freevo 1.8.1 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/*-#####.pid, (2) /tmp/freevo-gdb, (3) /tmp/freevo-gdb.sh, and (4) /tmp/*.stats temporary files.
local
high complexity
duncan-webb CWE-59
6.2
2008-11-05 CVE-2008-4954 Link Following vulnerability in Fumitoshi Ukai FML 4.0.3
mead.pl in fml 4.0.3 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/debugbuf temporary file.
6.9
2008-11-05 CVE-2008-4952 Link Following vulnerability in Emacs Emacs-Jabber 0.7.91
emacs-jabber in emacs-jabber 0.7.91 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/*.log temporary file.
local
emacs CWE-59
6.9
2008-11-05 CVE-2008-4951 Link Following vulnerability in Gplhost Dtc-Common 0.29.6
dtc 0.29.6 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/awstats.log, (b) /tmp/spam.log.#####, and (c) /tmp/spam_err.log temporary files, related to the (1) accesslog.php and (2) sa-wrapper scripts.
local
gplhost CWE-59
6.9
2008-11-05 CVE-2008-4949 Link Following vulnerability in Manoj Srivastava Dist 3.5
dist 3.5 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/cil#####, (b) /tmp/pdo#####, and (c) /tmp/pdn##### temporary files, related to the (1) patcil and (2) patdiff scripts.
6.9
2008-11-05 CVE-2008-4948 Link Following vulnerability in Nostatic Digitaldj 0.7.5
fest.pl in digitaldj 0.7.5 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ddj_fest.tmp temporary file.
6.9
2008-11-05 CVE-2008-4947 Link Following vulnerability in Guus Sliepen Dhis-Server
dhis-dummy-log-engine in dhis-server 5.3 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/dhis-dummy-log-engine.log temporary file.
6.9