CVE-2004-2605

aStats 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on (1) the aStats-Graphic-Signature-Generation file and (2) certain PNG image files.
Configurations

Configuration 1 (hide)

cpe:2.3:a:astats:astats:1.6.5:*:*:*:*:*:*:*

History

20 Nov 2024, 23:53

Type Values Removed Values Added
References () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=287604 - () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=287604 -
References () http://secunia.com/advisories/13679 - Vendor Advisory () http://secunia.com/advisories/13679 - Vendor Advisory
References () http://shellcode.org/pipermail/debian-audit/2004-December/000078.html - () http://shellcode.org/pipermail/debian-audit/2004-December/000078.html -
References () http://www.osvdb.org/12632 - () http://www.osvdb.org/12632 -
References () http://www.securityfocus.com/bid/12128 - () http://www.securityfocus.com/bid/12128 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/18698 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/18698 -

Information

Published : 2004-12-31 05:00

Updated : 2024-11-20 23:53


NVD link : CVE-2004-2605

Mitre link : CVE-2004-2605

CVE.ORG link : CVE-2004-2605


JSON object : View

Products Affected

astats

  • astats