Record summary

CVE-2004-0996 has a selected CVSS score of 2.1; EIP currently links 2 catalogued exploits.

Description

main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBCscope 13.0/15.x - Insecure Temporary File Creation (1)ExploitDB exploitby GangstuckNot analyzed1 file
ExploitDB

PoC details
ExploitDBCscope 13.0/15.x - Insecure Temporary File Creation (2)ExploitDB exploitby GangstuckNot analyzed1 file
ExploitDB

PoC details

References

Showing 12 of 14