6.9
CVSSv2

CVE-2008-5140

Published: 18/11/2008 Updated: 08/08/2017
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

trend-autoupdate.new in mailscanner 4.55.10 and other versions prior to 4.74.16-1 allows local users to overwrite arbitrary files via a symlink attack on a (1) /tmp/opr.ini.##### or (2) /tmp/lpt*.zip temporary file.

Vulnerable Product Search on Vulmon Subscribe to Product

debian mailscanner 4.55.10