2.1
CVSSv2

CVE-2002-0887

Published: 04/10/2002 Updated: 18/10/2016
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

scoadmin for Caldera/SCO OpenServer 5.0.5 and 5.0.6 allows local users to overwrite arbitrary files via a symlink attack on temporary files, as demonstrated using log files.

Vulnerable Product Search on Vulmon Subscribe to Product

caldera openserver 5.0.5

caldera openserver 5.0.6

Exploits

source: wwwsecurityfocuscom/bid/4875/info A vulnerability has been reported in the scoadmin utility that may allow a local attacker to overwrite any file The vulnerability is due to the predictable naming of temporary files used by scoadmin When writing to temporary files, there are no checks to ensure that it does not already exist Sy ...