MEDIUM
JBMC Software DirectAdmin before 1.334 allows local users to create or overwrite any file via a symlink attack on an arbitrary file in a certain temporary directory, related to a request for this temporary file in the PATH_INFO to the CMD_DB script during a backup action
Published May 5, 2009
6.9
MEDIUMCVSS 2.0
EPSS 0.55%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.