Lucene search

K
cveMitreCVE-2007-2030
HistoryApr 16, 2007 - 8:19 p.m.

CVE-2007-2030

2007-04-1620:19:00
mitre
web.nvd.nist.gov
27
cve-2007-2030
lharc.c
lha
insecure temporary files
local users
file read
file write
nvd

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

5.1%

lharc.c in lha does not securely create temporary files, which might allow local users to read or write files by creating a file before LHA is invoked.

Affected configurations

Nvd
Node
redhatenterprise_linuxMatch2.1
OR
redhatenterprise_linuxMatch3.0
OR
redhatenterprise_linuxMatch4.0
OR
redhatfedora_coreMatchcore_5.0
VendorProductVersionCPE
redhatenterprise_linux2.1cpe:2.3:o:redhat:enterprise_linux:2.1:*:*:*:*:*:*:*
redhatenterprise_linux3.0cpe:2.3:o:redhat:enterprise_linux:3.0:*:*:*:*:*:*:*
redhatenterprise_linux4.0cpe:2.3:o:redhat:enterprise_linux:4.0:*:*:*:*:*:*:*
redhatfedora_corecore_5.0cpe:2.3:o:redhat:fedora_core:core_5.0:*:*:*:*:*:*:*

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

5.1%