Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2003-1156

Опубликовано: 31 дек. 2003
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

Java Runtime Environment (JRE) and Software Development Kit (SDK) 1.4.2 through 1.4.2_02 allows local users to overwrite arbitrary files via a symlink attack on (1) unpack.log, as created by the unpack program, or (2) .mailcap1 and .mime.types1, as created by the RPM program.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sun:jdk:1.4.2:*:linux:*:*:*:*:*
cpe:2.3:a:sun:jdk:1.4.2_02:*:linux:*:*:*:*:*
cpe:2.3:a:sun:jre:1.4.2:*:linux:*:*:*:*:*
cpe:2.3:a:sun:jre:1.4.2:update2:linux:*:*:*:*:*

EPSS

Процентиль: 20%
0.00063
Низкий

4.6 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Java Runtime Environment (JRE) and Software Development Kit (SDK) 1.4.2 through 1.4.2_02 allows local users to overwrite arbitrary files via a symlink attack on (1) unpack.log, as created by the unpack program, or (2) .mailcap1 and .mime.types1, as created by the RPM program.

EPSS

Процентиль: 20%
0.00063
Низкий

4.6 Medium

CVSS2

Дефекты

NVD-CWE-Other