v4lkyrius

2 exploits Active since Dec 2008
CVE-2008-5705 EXPLOITDB text WRITEUP
Verlihub 0.9.8d-RC2 - Remote Command Execution via Trigger Argument Injection
The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier, when user triggers are enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in an argument.
CVE-2008-5706 EXPLOITDB text WRITEUP
Verlihub <0.9.8d-RC2 - Local File Overwrite
The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /tmp/trigger.tmp temporary file.