Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-4803

Опубликовано: 31 дек. 2005
Источник: nvd
CVSS2: 3.6
EPSS Низкий

Описание

graphviz before 2.2.1 allows local users to overwrite arbitrary files via a symlink attack on temporary files. NOTE: this issue was originally associated with a different CVE identifier, CVE-2005-2965, which had been used for multiple different issues. This is the correct identifier.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:graphviz:graphviz:*:*:*:*:*:*:*:*
Версия до 2.2 (включая)
cpe:2.3:a:graphviz:graphviz:1.5.1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.5.2:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.5.3:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5.1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5.2:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5.3:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5.4:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5.5:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5.6:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5.7:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5_0.1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5_0.2:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.5_0.3:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.16.1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.7.16.2:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.8.5.1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.8.5.2:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.8.9.1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.10_2003-09-15_0415_1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.10_2003-09-15_0415_2:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.12.1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.12.2:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.12.3:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.14.1:*:*:*:*:*:*:*
cpe:2.3:a:graphviz:graphviz:1.16.1:*:*:*:*:*:*:*

EPSS

Процентиль: 20%
0.00063
Низкий

3.6 Low

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 19 лет назад

graphviz before 2.2.1 allows local users to overwrite arbitrary files via a symlink attack on temporary files. NOTE: this issue was originally associated with a different CVE identifier, CVE-2005-2965, which had been used for multiple different issues. This is the correct identifier.

debian
больше 19 лет назад

graphviz before 2.2.1 allows local users to overwrite arbitrary files ...

github
больше 3 лет назад

graphviz before 2.2.1 allows local users to overwrite arbitrary files via a symlink attack on temporary files. NOTE: this issue was originally associated with a different CVE identifier, CVE-2005-2965, which had been used for multiple different issues. This is the correct identifier.

EPSS

Процентиль: 20%
0.00063
Низкий

3.6 Low

CVSS2

Дефекты

NVD-CWE-Other