Exploitation Summary
EIP tracks 1 public exploit for CVE-2001-0610. PoCs published by Paul Starzetz.
AI-analyzed exploit summary This exploit demonstrates a symlink attack in KFM (KDE File Manager) due to insecure directory creation in a predictable cache location. A local attacker can overwrite files owned by the KFM user by creating symbolic links in the cache directory.
Description
kfm as included with KDE 1.x can allow a local attacker to gain additional privileges via a symlink attack in the kfm cache directory in /tmp.
Exploits (1)
This exploit demonstrates a symlink attack in KFM (KDE File Manager) due to insecure directory creation in a predictable cache location. A local attacker can overwrite files owned by the KFM user by creating symbolic links in the cache directory.