7.2
CVSSv2

CVE-2002-0248

Published: 29/05/2002 Updated: 11/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

wmtv 0.6.5 and previous versions allows local users to modify arbitrary files via a symlink attack on a configuration file.

Vulnerable Product Search on Vulmon Subscribe to Product

wliang wmtv

Vendor Advisories

Nicolas Boullis found some security problems in the wmtv package (a dockable video4linux TV player for windowmaker) which is distributed in Debian GNU/Linux 22 With the current version of wmtv, the configuration file is written back as the superuser, and without any further checks A malicious user might use that to damage important files This p ...