Описание
Race condition in Ce/Ceterm (aka ARPUS/Ce) 2.5.4 and earlier allows local users to write to arbitrary files via a symlink attack on the ce_edit_log temporary file.
Ссылки
- Exploit
- Vendor Advisory
- Exploit
- Vendor Advisory
- Exploit
- Vendor Advisory
- Exploit
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.3.2 (включая)
Одно из
cpe:2.3:a:swlink:ce_ceterm:*:*:*:*:*:*:*:*
cpe:2.3:a:swlink:ce_ceterm:2.4:*:*:*:*:*:*:*
cpe:2.3:a:swlink:ce_ceterm:2.5:*:*:*:*:*:*:*
cpe:2.3:a:swlink:ce_ceterm:2.5.1:*:*:*:*:*:*:*
cpe:2.3:a:swlink:ce_ceterm:2.5.2:*:*:*:*:*:*:*
cpe:2.3:a:swlink:ce_ceterm:2.5.3:*:*:*:*:*:*:*
cpe:2.3:a:swlink:ce_ceterm:2.5.4:*:*:*:*:*:*:*
EPSS
Процентиль: 70%
0.00637
Низкий
1.2 Low
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Race condition in Ce/Ceterm (aka ARPUS/Ce) 2.5.4 and earlier allows local users to write to arbitrary files via a symlink attack on the ce_edit_log temporary file.
EPSS
Процентиль: 70%
0.00637
Низкий
1.2 Low
CVSS2
Дефекты
NVD-CWE-Other