1.9
CVSSv2

CVE-2007-0473

Published: 03/02/2007 Updated: 08/03/2011
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The writeFile function in core/smb4kfileio.cpp in Smb4K prior to 0.8.0 does not preserve /etc/sudoers permissions across modifications, which allows local users to obtain sensitive information (/etc/sudoers contents) by reading this file.

Vulnerable Product Search on Vulmon Subscribe to Product

smb4k smb4k 0.4

smb4k smb4k 0.5

smb4k smb4k 0.6

smb4k smb4k 0.7