Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-2960

EPSS 0.07% · P22
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-2960

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
cfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by vicf.in, a different vulnerability than CVE-2005-3137.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
GNU CFEngine不安全临时文件创建漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
cfengine(配置引擎)是一种UNIX 管理工具,其目的是使简单的管理的任务自动化,使困难的任务变得较容易。 cfengine 1.6.5和2.1.16可以使本地用户借助由vicf.in使用的临时文件上的symlink攻击,改写任意文件。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-2960

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-2960

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-10-05 · 25 CVEs total

CVE-2005-3145Sblim-sfcb 'htpAdapter.c' 拒绝服务漏洞
CVE-2005-3156EasyGuppy 'printfaq.php'目录遍历漏洞
CVE-2005-3155MailEnable IMAP超长邮箱名W3C日志记录溢出漏洞
CVE-2005-3154BitDefender Antivirus Logging Function格式化字符串漏洞
CVE-2005-3153MyBloggie 'login.php'SQL注入漏洞
CVE-2005-3152CubeCart 多个跨站脚本攻击漏洞
CVE-2005-3151Blender 命令行处理缓冲区溢出漏洞
CVE-2005-3150Weex Log_Flush() 函数远程格式化字符串漏洞
CVE-2005-3149UIM LibUIM 环境变量特权提升漏洞
CVE-2005-3148StoreBackup symbolic links 权限设置漏洞
CVE-2005-3147StoreBackup 备份根目录 敏感信息泄露漏洞
CVE-2005-3146StoreBackup不安全临时文件创建漏洞
CVE-2005-0023Gnome-PTY-Helper UTMP主机名欺骗漏洞
CVE-2005-3144SBLim-SFCB畸形Header拒绝服务漏洞
CVE-2005-31434D WebStar Remote IMAP 拒绝服务漏洞
CVE-2005-3142Kaspersky Anti-Virus Library CAB Record 远程堆溢出漏洞
CVE-2005-3141Cerulean Studios Trillian 反向连接 拒绝服务漏洞
CVE-2005-3140Procom Technology NetFORCE 800信息泄露漏洞
CVE-2005-3139Bugzilla User-Matching信息泄露漏洞
CVE-2005-3138Bugzilla config.cgi 信息泄露漏洞

Showing top 20 of 25 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-2960

No comments yet


Leave a comment