Vulnerability Description
Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to the creation of insecure temporary directories.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gambas Project | Gambas | < 3.4.0 |
| Debian | Debian Linux | 8.0 |
Related Weaknesses (CWE)
References
- http://www.openwall.com/lists/oss-security/2013/03/03/4Mailing ListThird Party Advisory
- https://access.redhat.com/security/cve/cve-2013-1809Not ApplicableThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-1809Issue TrackingThird Party Advisory
- https://code.google.com/archive/p/gambas/issues/365Issue TrackingThird Party Advisory
- https://security-tracker.debian.org/tracker/CVE-2013-1809Third Party Advisory
- https://sourceforge.net/p/gambas/code/5438/PatchThird Party Advisory
- http://www.openwall.com/lists/oss-security/2013/03/03/4Mailing ListThird Party Advisory
- https://access.redhat.com/security/cve/cve-2013-1809Not ApplicableThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-1809Issue TrackingThird Party Advisory
- https://code.google.com/archive/p/gambas/issues/365Issue TrackingThird Party Advisory
- https://security-tracker.debian.org/tracker/CVE-2013-1809Third Party Advisory
- https://sourceforge.net/p/gambas/code/5438/PatchThird Party Advisory
FAQ
What is CVE-2013-1809?
CVE-2013-1809 is a vulnerability with a CVSS score of 7.5 (HIGH). Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to the creation of insecure temporary directories.
How severe is CVE-2013-1809?
CVE-2013-1809 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-1809?
Check the references section above for vendor advisories and patch information. Affected products include: Gambas Project Gambas, Debian Debian Linux.