Lucene search

K
cveMitreCVE-2005-4802
HistoryMay 17, 2006 - 5:00 p.m.

CVE-2005-4802

2006-05-1717:00:00
mitre
web.nvd.nist.gov
26
flexbackup
vulnerability
code execution
symlink attack
file overwrite

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

18.1%

Flexbackup 1.2.1 and earlier allows local users to overwrite files and execute code via a symlink attack on temporary files. NOTE: the raw source referenced an incorrect candidate number; this is the correct number to use.

Affected configurations

Nvd
Node
flexbackupflexbackupRange1.2.1
VendorProductVersionCPE
flexbackupflexbackup*cpe:2.3:a:flexbackup:flexbackup:*:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

18.1%