Zero G InstallAnywhere Insecure...

- AV AC AU C I A
发布: 2004-07-26
修订: 2025-04-13

It is reported that InstallAnywhere is prone to a local insecure temporary file handling symbolic link vulnerability. This issue is due to an error that allows the application to insecurely create a file with a predictable name in the '/tmp' directory. A successful attack can eventually allow a local attacker to gain super user privileges. Versions 5.0.6 and 5.0.7 are reported vulnerable. Other versions may also be affected by this issue.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息