vendor:
Solaris
by:
Unknown
5.5
CVSS
MEDIUM
Insecure Temporary File Creation
377
CWE
Product Name: Solaris
Affected Version From: Solaris 9
Affected Version To: Solaris 10
Patch Exists: YES
Related CWE: CVE-2010-0251
CPE: o:oracle:solaris
Platforms Tested:
2010
Insecure Temporary File Creation in Solaris Management Console
The 'Solaris Management Console' subcomponent of Oracle Solaris creates temporary files in an insecure manner. An attacker with local access can exploit this issue to overwrite arbitrary files, leading to denial-of-service conditions or aiding in other attacks.
Mitigation:
Upgrade to a patched version of Oracle Solaris.