CVE-2001-0890
Published Dec 11, 2001
Last updated 16 years ago
Overview
- Description
- Certain backend drivers in the SANE library 1.0.3 and earlier, as used in frontend software such as XSane, allows local users to modify files via a symlink attack on temporary files.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 2.1
- Impact score
- 2.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:sane:sane:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "49B2EFC6-08BE-45A6-81A9-1592C18FC41E" }, { "criteria": "cpe:2.3:a:sane:sane:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C653F5D7-8F19-4EA6-A3E1-CBE493D45E86" }, { "criteria": "cpe:2.3:a:sane:sane:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67D729AD-29EB-4352-811C-CF4BE2A78699" }, { "criteria": "cpe:2.3:a:sane:sane:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5081C505-7F02-450F-AFC0-75BBF21C0BED" }, { "criteria": "cpe:2.3:a:sane:sane:1.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "75940BFB-561E-4F68-9301-BB4ACC667E08" }, { "criteria": "cpe:2.3:a:sane:sane:1.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F6688485-2120-4660-B9C2-3DFA1BE970AD" }, { "criteria": "cpe:2.3:a:sane:sane:1.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4A638B1D-4542-4195-990C-43F451B4A6BA" } ], "operator": "OR" } ] } ]