VulnerabilityModified
CVE-2005-1842
VCNative for Adobe Version Cue 1.0 and 1.0.1, as used in Creative Suite 1.0 and 1.3, and when running on Mac OS X with Version Cue Workspace, creates temporary log files with predictable names, which allows local users to modify arbitrary files via a…
LOW 2.1EPSS 0.91%
Does this matter?
Lower severity and a low EPSS score (0.91%). Track it; it rarely justifies an emergency change on its own.
Description
VCNative for Adobe Version Cue 1.0 and 1.0.1, as used in Creative Suite 1.0 and 1.3, and when running on Mac OS X with Version Cue Workspace, creates temporary log files with predictable names, which allows local users to modify arbitrary files via a symlink attack.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 0.91% probability · 58th percentile
- CISA KEV
- Not listed
- Affected
- adobe/version cue
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/16541Patch, Vendor Advisory
- http://securitytracker.com/id?1014776
- http://www.adobe.com/support/techdocs/327129.htmlPatch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=297&type=vulnerabilities
- http://www.securityfocus.com/bid/14638
- http://secunia.com/advisories/16541Patch, Vendor Advisory
- http://securitytracker.com/id?1014776
- http://www.adobe.com/support/techdocs/327129.htmlPatch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=297&type=vulnerabilities
- http://www.securityfocus.com/bid/14638
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.