CVE-2010-3691
CVE-2010-3691
PGTStorage/pgt-file.php in phpCAS before 1.1.3, when proxy mode is enabled, allows local users to overwrite arbitrary files via a symlink attack on an unspecified file.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495542#82http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050415.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-November/050428.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-October/049600.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-October/049602.htmlhttps://developer.jasig.org/source/changelog/jasigsvn?cs=21538http://secunia.com/advisories/41878http://secunia.com/advisories/42149http://secunia.com/advisories/42184http://secunia.com/advisories/43427https://forge.indepnet.net/projects/glpi/repository/revisions/12601https://issues.jasig.org/browse/PHPCAS-80