Vulnerability Description
Musicmatch 10.00.2047 and earlier store log files in the Program Files directory instead of the user profile, which may allow local users to obtain sensitive information.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Musicmatch | Jukebox | <= 10.00.2047 |
References
- http://marc.info/?l=bugtraq&m=111358261404682&w=2
- http://www.hyperdose.com/advisories/H2005-02.txt
- http://marc.info/?l=bugtraq&m=111358261404682&w=2
- http://www.hyperdose.com/advisories/H2005-02.txt
FAQ
What is CVE-2005-1167?
CVE-2005-1167 is a vulnerability with a CVSS score of 2.1 (LOW). Musicmatch 10.00.2047 and earlier store log files in the Program Files directory instead of the user profile, which may allow local users to obtain sensitive information.
How severe is CVE-2005-1167?
CVE-2005-1167 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1167?
Check the references section above for vendor advisories and patch information. Affected products include: Musicmatch Jukebox.