3.3
CVSSv2

CVE-2010-2794

Published: 30/08/2010 Updated: 08/09/2010
CVSS v2 Base Score: 3.3 | Impact Score: 4.9 | Exploitability Score: 3.4
VMScore: 294
Vector: AV:L/AC:M/Au:N/C:N/I:P/A:P

Vulnerability Summary

The SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to overwrite arbitrary files via a symlink attack on an unspecified log file.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat spice-xpi 2.2

Vendor Advisories

Synopsis Moderate: spice-xpi security and bug fix update Type/Severity Security Advisory: Moderate Topic An updated spice-xpi package that fixes two security issues and three bugsis now available for Red Hat Enterprise Linux 5The Red Hat Security Response Team has rated this update as having moderatesecuri ...