Lucene search

K
cve[email protected]CVE-2001-1085
HistoryJun 25, 2002 - 4:00 a.m.

CVE-2001-1085

2002-06-2504:00:00
web.nvd.nist.gov
24
cve-2001-1085
lmail 2.7
security vulnerability
symlink attack
temporary file
overwrite files

3.7 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:H/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

0.4%

Lmail 2.7 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file.

Affected configurations

NVD
Node
jon_zeefflmailMatch2.7
CPENameOperatorVersion
jon_zeeff:lmailjon zeeff lmaileq2.7

3.7 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:H/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

0.4%

Related for CVE-2001-1085