PT-1998-1131 · Satan · Satan

Published

1998-06-26

·

Updated

2016-10-18

·

CVE-1999-1037

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SATAN version 1.1.1
Description The issue allows local users to overwrite arbitrary files via a symlink attack on the /tmp/rex.$$ file.
Recommendations For SATAN version 1.1.1, consider restricting access to the /tmp/rex.$$ file to prevent symlink attacks until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-1999-1037

Affected Products

Satan