Record summary

CVE-2000-0691 has a selected CVSS score of 2.1; EIP currently links 1 catalogued exploit.

Description

The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBGert Doering mgetty 1.1.19/1.1.20/1.1.21/1.22.8 - Symbolic Link TraversalExploitDB exploitby Stan BubrouskiNot analyzed1 file
ExploitDB

PoC details

References

5