|
|
| |
|
| |
apachetop: insecure temporary file
| Package(s): | apachetop |
CVE #(s): | CAN-2005-2660
|
| Created: | October 4, 2005 |
Updated: | October 5, 2005 |
| Description: |
Eric Romang discovered an insecurely created temporary file in
apachetop, a realtime monitoring tool for the Apache webserver that
could be exploited with a symlink attack to overwrite arbitrary files
with the user id that runs apachetop. |
| Alerts: |
|
( Log in to post comments)
|
|
|