PT-2005-4122 · Bmc · Control-M

Scott Cromar

·

Publicado

2005-10-25

·

Atualizado

2016-10-18

·

CVE-2005-3311

CVSS v2.0

2.1

Baixa

VetorAV:L/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions BMC Software Control-M version 6.1.03
Description The issue allows local users to overwrite arbitrary files via a symlink attack on temporary files. This can potentially lead to unauthorized access or modification of sensitive data.
Recommendations For version 6.1.03, consider restricting access to temporary files to prevent symlink attacks until a patch is available. As a temporary workaround, monitor file system activity closely to detect potential unauthorized file modifications.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-3311

Produtos afetados

Control-M