Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2004-0851
The (1) write_list and (2) dump_curr_list functions in Net-Acct before 0.71 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.001
EPSS Ranking
22.7%
CVSS Severity
CVSS v2 Score
2.1
References
http://exorsus.net/projects/net-acct/net-acct-notempfiles.patch
http://marc.info/?l=bugtraq&m=109466910232385&w=2
http://secunia.com/advisories/12476
http://www.debian.org/security/2004/dsa-559
http://www.securityfocus.com/bid/11125
https://exchange.xforce.ibmcloud.com/vulnerabilities/17283
http://exorsus.net/projects/net-acct/net-acct-notempfiles.patch
http://marc.info/?l=bugtraq&m=109466910232385&w=2
http://secunia.com/advisories/12476
http://www.debian.org/security/2004/dsa-559
http://www.securityfocus.com/bid/11125
https://exchange.xforce.ibmcloud.com/vulnerabilities/17283
Products affected by CVE-2004-0851
Ulrich Callmeier
»
Net-Acct
»
Version:
0.6
cpe:2.3:a:ulrich_callmeier:net-acct:0.6
Ulrich Callmeier
»
Net-Acct
»
Version:
0.7
cpe:2.3:a:ulrich_callmeier:net-acct:0.7
Ulrich Callmeier
»
Net-Acct
»
Version:
0.71
cpe:2.3:a:ulrich_callmeier:net-acct:0.71
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved