6.9
CVSSv2

CVE-2008-5706

Published: 22/12/2008 Updated: 29/09/2017
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 695
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and previous versions allows local users to overwrite arbitrary files via a symlink attack on the /tmp/trigger.tmp temporary file.

Vulnerable Product Search on Vulmon Subscribe to Product

verlihub-project verlihub 0.9.8d

Exploits

== verlihub <=098d-RC2 remote r00t / command execution ======================= | ' / | /__ ___ ( / \\--`-'-|`---\\ | ...