Vulnerability Description
Symbolic link vulnerability in xbreaky before 0.5.5 allows local users to overwrite arbitrary files via a symlink from the user's .breakyhighscores file to the target file.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dave Brul | Xbreaky | 0.0.3 |
References
- http://archives.neohapsis.com/archives/bugtraq/2002-09/0131.htmlExploitVendor Advisory
- http://www.iss.net/security_center/static/10078.phpVendor Advisory
- http://www.securityfocus.com/bid/5700PatchVendor Advisory
- http://xbreaky.sourceforge.net/Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-09/0131.htmlExploitVendor Advisory
- http://www.iss.net/security_center/static/10078.phpVendor Advisory
- http://www.securityfocus.com/bid/5700PatchVendor Advisory
- http://xbreaky.sourceforge.net/Vendor Advisory
FAQ
What is CVE-2002-1502?
CVE-2002-1502 is a vulnerability with a CVSS score of 2.1 (LOW). Symbolic link vulnerability in xbreaky before 0.5.5 allows local users to overwrite arbitrary files via a symlink from the user's .breakyhighscores file to the target file.
How severe is CVE-2002-1502?
CVE-2002-1502 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-1502?
Check the references section above for vendor advisories and patch information. Affected products include: Dave Brul Xbreaky.