Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2008-5380

EPSS 0.09% · P26
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2008-5380

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
gpsdrive (aka gpsdrive-scripts) 2.09 allows local users to overwrite arbitrary files via a symlink attack on an (a) /tmp/geo#####, a (b) /tmp/geocaching.loc, a (c) /tmp/geo#####.*, or a (d) /tmp/geo.* temporary file, related to the (1) geo-code and (2) geo-nearest scripts, different vectors than CVE-2008-4959.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
GpsDrive 'geo-nearest' 不安全临时文件创建漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
gpsdrive是一个汽车导航系统。 gpsdrive (又称gpsdrive-scripts) 2.09版本允许本地用户可以借助对一个 (a) /tmp/geo#####,一个(b) /tmp/geocaching.loc, 一个(c) /tmp/geo#####.*, 或一个(d) /tmp/geo.* 临时文件的一个symlink攻击,重写任意文件。该临时文件与(1) geo-code和(2) geo-nearest脚本相关。该漏洞不同于CVE-2008-4959。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2008-5380

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2008-5380

登录查看更多情报信息。

Same Patch Batch · n/a · 2008-12-08 · 20 CVEs total

CVE-2008-5375CMus 不安全临时文件创建漏洞
CVE-2008-5365ActiveWebSoftwares ActiveVotes 'VoteHistory.asp' SQL注入漏洞
CVE-2008-5364Adobe getPlus ActiveX控件栈溢出漏洞
CVE-2008-5363Adobe Flash Player ActionScript 畸形PDF文件拒绝服务漏洞
CVE-2008-5362Adobe Flash Player ActionScript 畸形PDF敏感信息泄露漏洞
CVE-2008-5361Adobe Flash Player ActionScript中多个畸形PDF敏感信息泄露漏洞
CVE-2008-5379Debian netdisco-mibs-installer symlink攻击漏洞
CVE-2008-5378ARB symlink攻击漏洞
CVE-2008-5377CUPS 'pstopdf' symlink攻击漏洞
CVE-2008-5376crip editcomment symlink攻击漏洞
CVE-2008-5366Debian 'ppp' 不安全临时文件创建漏洞
CVE-2008-5374bash-doc 不安全临时文件创建漏洞
CVE-2008-5373jose_luis_tallon bacula_common 不安全临时文件创建漏洞
CVE-2008-5372lessdisks.net sdm 不安全临时文件创建漏洞
CVE-2008-5371Screenie 不安全临时文件创建漏洞
CVE-2008-5370PvPGN 不安全临时文件创建漏洞
CVE-2008-5369noip2 不安全临时文件创建漏洞
CVE-2008-5368Muttprint 不安全临时文件创建漏洞
CVE-2008-5367Debian ppp-udeb 不安全临时文件创建漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2008-5380

No comments yet


Leave a comment