popauth utility in Qualcomm Qpopper 4.0 and previous versions allows local users to overwrite arbitrary files and execute commands as the pop user via a symlink attack on the -trace file option.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
qualcomm qpopper |