CVE-2005-1396
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/05/2005
Last modified:
03/04/2025
Description
Race condition in Ce/Ceterm (aka ARPUS/Ce) 2.5.4 and earlier allows local users to write to arbitrary files via a symlink attack on the ce_edit_log temporary file.
Impact
Base Score 2.0
1.20
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:swlink:ce_ceterm:*:*:*:*:*:*:*:* | 2.3.2 (including) | |
| cpe:2.3:a:swlink:ce_ceterm:2.4:*:*:*:*:*:*:* | ||
| cpe:2.3:a:swlink:ce_ceterm:2.5:*:*:*:*:*:*:* | ||
| cpe:2.3:a:swlink:ce_ceterm:2.5.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:swlink:ce_ceterm:2.5.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:swlink:ce_ceterm:2.5.3:*:*:*:*:*:*:* | ||
| cpe:2.3:a:swlink:ce_ceterm:2.5.4:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://lists.grok.org.uk/pipermail/full-disclosure/2005-May/033705.html
- http://secunia.com/advisories/15197
- http://securitytracker.com/id?1013855=
- http://www.digitalmunition.com/DMA%5B2005-0501a%5D.txt
- http://www.osvdb.org/16050
- http://lists.grok.org.uk/pipermail/full-disclosure/2005-May/033705.html
- http://secunia.com/advisories/15197
- http://securitytracker.com/id?1013855=
- http://www.digitalmunition.com/DMA%5B2005-0501a%5D.txt
- http://www.osvdb.org/16050



