Back to search
CVE-2004-0423
Published: Apr 20, 2004
Modified: Aug 8, 2024
PUBLISHED
Description
The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files via a symlink attack on the ssmtp.log temporary log file.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20040418 ssmtp insecure file creation
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now