CVE-1999-1038

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Jun 26, 1998
Updated: Nov 20, 2024

Summary

CVE-1999-1038 is a vulnerability affecting Tiger 2.2.3, which enables local users to manipulate arbitrary files through a symlink attack. The issue lies in the handling of temporary files in Tiger's default working directory, defined by the WORKDIR variable. By creating a symbolic link to a file with the intended name in a strategic location, an attacker can overwrite that file with malicious data, leading to potential security risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share