Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2008-11-06 CVE-2008-4969 Link Following vulnerability in Alastair Mckinstry Ltp-Network-Test 20060918
ltp-network-test 20060918 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/vsftpd.conf, (b) /tmp/udp/2/*, (c) /tmp/tcp/2/*, (d) /tmp/udp/3/*, (e) /tmp/tcp/3/*, (f) /tmp/nfs_fsstress.udp.2.log, (g) /tmp/nfs_fsstress.udp.3.log, (h) /tmp/nfs_fsstress.tcp.2.log, (i) /tmp/nfs_fsstress.tcp.3.log, and (j) /tmp/nfs_fsstress.sardata temporary files, related to the (1) ftp_setup_vsftp_conf and (2) nfs_fsstress.sh scripts.
6.9
2008-11-06 CVE-2008-4968 Link Following vulnerability in Bitmover Lmbench 3.0A7
The (1) rccs and (2) STUFF scripts in lmbench 3.0-a7 allow local users to overwrite arbitrary files via a symlink attack on a /tmp/sdiff.##### temporary file.
6.9
2008-11-06 CVE-2008-4967 Link Following vulnerability in Linuxtrade 3.65
linuxtrade 3.65 allows local users to overwrite arbitrary files via a symlink attack on the (a) /tmp/bwk, (b) /tmp/zzz, and (c) /tmp/ggg temporary files, related to the (1) linuxtrade.bwkvol, (2) linuxtrade.wn, and (3) moneyam.helper scripts.
6.9
2008-11-06 CVE-2008-4966 Link Following vulnerability in Openswan Linux-Patch-Openswan 2.4.12
linux-patch-openswan 2.4.12 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/snap##### and (b) /tmp/nightly##### temporary files, related to the (1) maysnap and (2) maytest scripts.
6.9
2008-11-06 CVE-2008-4965 Link Following vulnerability in Savonet Liguidsoap 0.3.8.1+2
liguidsoap.py in liguidsoap 0.3.8.1+2 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/liguidsoap.liq, (2) /tmp/lig.#####.log, and (3) /tmp/emission.ogg temporary files.
local
savonet CWE-59
6.9
2008-11-06 CVE-2008-4964 Link Following vulnerability in Krzysztof Kozlowski Konwert 1.8
filters/any-UTF8 in konwert 1.8 allows local users to delete arbitrary files via a symlink attack on a /tmp/any-##### temporary file.
6.9
2008-11-05 CVE-2008-4960 Link Following vulnerability in DOV Grobgeld Impose+ 0.2
impose in impose+ 0.2 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/*-tmp.ps and (2) /tmp/bboxx-* temporary files.
6.9
2008-11-05 CVE-2008-4959 Link Following vulnerability in Gpsdrive Gpsdrive-Scripts 2.10
geo-code in gpsdrive-scripts 2.10~pre4 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/geo.google, (2) /tmp/geo.yahoo, (3) /tmp/geo.coords, and (4) /tmp/geo#####.coords temporary files.
6.9
2008-11-05 CVE-2008-4958 Link Following vulnerability in Alejandro Garrido Mota Gdrae 0.1
gdrae in gdrae 0.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/gdrae/palabra temporary file.
6.9
2008-11-05 CVE-2008-4957 Link Following vulnerability in Gccxml 0.9.0
find_flags in Kitware GCC-XML (gccxml) 0.9.0 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/*.cxx temporary file.
local
gccxml CWE-59
6.9