CPANSA-CGI-Session-2006-1279: CGI-Session vulnerability
Publisher | giterlizzi | Document category | csaf_security_advisory |
---|---|---|---|
Initial release date | 2006-03-19T00:00:00 | Engine | CSAF Perl Toolkit 0.25 |
Current release date | 2006-03-19T00:00:00 | Build Date | |
Current version | 1 | Status | final |
CVSS v3.1 Base Score | Severity | ||
Original language | Language | en | |
Also referred to |
Vulnerability Description
CGI::Session 4.03-1 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by (1) Driver::File, (2) Driver::db_file, and possibly (3) Driver::sqlite.
Vulnerabilities
CVE-2006-1279
Vulnerability DescriptionCGI::Session 4.03-1 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by (1) Driver::File, (2) Driver::db_file, and possibly (3) Driver::sqlite.
Product status
Known affected
Product | Score | ||||||||
---|---|---|---|---|---|---|---|---|---|
CGI-Session less than 4.10 |
|
giterlizzi
Namespace: https://github.com/giterlizzi/
gdt@cpan.org
References
- CPANSA-CGI-Session-2006-1279 JSON self
https://raw.githubusercontent.com/giterlizzi/perl-CPANSA-CSAF/develop/csaf/white/2006/cpansa-cgi-session-2006-1279.json - http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=356555 external
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=356555 - http://secunia.com/advisories/19211 external
http://secunia.com/advisories/19211 - http://www.securityfocus.com/bid/17177 external
http://www.securityfocus.com/bid/17177 - http://www.osvdb.org/23865 external
http://www.osvdb.org/23865 - http://www.vupen.com/english/advisories/2006/0946 external
http://www.vupen.com/english/advisories/2006/0946 - https://exchange.xforce.ibmcloud.com/vulnerabilities/25285 external
https://exchange.xforce.ibmcloud.com/vulnerabilities/25285 - CVE-2006-1279 (NVD) external
https://nvd.nist.gov/vuln/detail/CVE-2006-1279
Revision history
Version | Date of the revision | Summary of the revision |
---|---|---|
1 | Sun Mar 19 00:00:00 2006 | First release |
Sharing rules
TLP:WHITE
For the TLP version see: https://www.first.org/tlp/