SilverCity before 0.9.5-r1 installs (1) cgi-styler-form.py, (2) cgi-styler.py, and (3) source2html.py with read and write world permissions, which allows local users to execute arbitrary code.
References
Link | Resource |
---|---|
http://bugs.gentoo.org/show_bug.cgi?id=93558 | Issue Tracking |
http://secunia.com/advisories/15632 | Broken Link |
http://securitytracker.com/id?1014153 | Broken Link Third Party Advisory VDB Entry |
http://www.gentoo.org/security/en/glsa/glsa-200506-05.xml | Third Party Advisory |
http://bugs.gentoo.org/show_bug.cgi?id=93558 | Issue Tracking |
http://secunia.com/advisories/15632 | Broken Link |
http://securitytracker.com/id?1014153 | Broken Link Third Party Advisory VDB Entry |
http://www.gentoo.org/security/en/glsa/glsa-200506-05.xml | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2005-06-08 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-1941
Mitre link : CVE-2005-1941
CVE.ORG link : CVE-2005-1941
JSON object : View
Products Affected
silvercity_project
- silvercity
CWE
CWE-276
Incorrect Default Permissions