Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-2960

cfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by vicf.in, a different vulnerability than CVE-2005-3137.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.2%
CVSS Severity
CVSS v2 Score 2.1
References
Products affected by CVE-2005-2960
  • Gnu » Cfengine » Version: 1.5
    cpe:2.3:a:gnu:cfengine:1.5
  • Gnu » Cfengine » Version: 1.5.3-4
    cpe:2.3:a:gnu:cfengine:1.5.3-4
  • Gnu » Cfengine » Version: 1.6
    cpe:2.3:a:gnu:cfengine:1.6
  • Gnu » Cfengine » Version: 1.6.5
    cpe:2.3:a:gnu:cfengine:1.6.5
  • Gnu » Cfengine » Version: 2.0.0
    cpe:2.3:a:gnu:cfengine:2.0.0
  • Gnu » Cfengine » Version: 2.0.1
    cpe:2.3:a:gnu:cfengine:2.0.1
  • Gnu » Cfengine » Version: 2.0.2
    cpe:2.3:a:gnu:cfengine:2.0.2
  • Gnu » Cfengine » Version: 2.0.3
    cpe:2.3:a:gnu:cfengine:2.0.3
  • Gnu » Cfengine » Version: 2.0.4
    cpe:2.3:a:gnu:cfengine:2.0.4
  • Gnu » Cfengine » Version: 2.0.5
    cpe:2.3:a:gnu:cfengine:2.0.5
  • Gnu » Cfengine » Version: 2.0.6
    cpe:2.3:a:gnu:cfengine:2.0.6
  • Gnu » Cfengine » Version: 2.0.7
    cpe:2.3:a:gnu:cfengine:2.0.7
  • Gnu » Cfengine » Version: 2.0.8
    cpe:2.3:a:gnu:cfengine:2.0.8
  • Gnu » Cfengine » Version: 2.1.0
    cpe:2.3:a:gnu:cfengine:2.1.0
  • Gnu » Cfengine » Version: 2.1.16
    cpe:2.3:a:gnu:cfengine:2.1.16
  • Gnu » Cfengine » Version: 2.1.7
    cpe:2.3:a:gnu:cfengine:2.1.7
  • Gnu » Cfengine » Version: 2.1.8
    cpe:2.3:a:gnu:cfengine:2.1.8
  • Gnu » Cfengine » Version: 2.1.9
    cpe:2.3:a:gnu:cfengine:2.1.9
  • Debian » Debian Linux » Version: 3.1
    cpe:2.3:o:debian:debian_linux:3.1


Contact Us

Shodan ® - All rights reserved