CVE-2012-0054
Last modified
CVE-2012-0054 is a vulnerability of currently unknown severity. libs/updater.py in GoLismero 0.6.3, and other versions before Git revision 2b3bb43d6867, as used in backtrack and possibly other products, allows local users to overwrite arbitrary files via a symlink attack on GoLismero-controlled files, as demonstrated using Admin/changes.dat.. EPSS estimates a 0.31% chance of exploitation in the next 30 days.
Description
libs/updater.py in GoLismero 0.6.3, and other versions before Git revision 2b3bb43d6867, as used in backtrack and possibly other products, allows local users to overwrite arbitrary files via a symlink attack on GoLismero-controlled files, as demonstrated using Admin/changes.dat.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Golismero | Golismero | 0.6.3 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-0054?
How severe is CVE-2012-0054?
How do I fix CVE-2012-0054?
Are you affected by CVE-2012-0054?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
