PT-2008-6796 · Sun · Sun Snmp Management Agent
Published
2008-12-29
·
Updated
2017-08-08
·
CVE-2008-5746
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Sun SNMP Management Agent (SUNWmasf) versions 1.4u2 through 1.5.4
Description
The issue allows local users to overwrite arbitrary files and gain privileges via a symlink attack on temporary files.
Recommendations
For Sun SNMP Management Agent (SUNWmasf) versions 1.4u2 through 1.5.4, consider restricting access to temporary files to prevent a symlink attack until a patch is available.
Fix
Link Following
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sun Snmp Management Agent