dhis-dummy-log-engine in dhis-server 5.3 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/dhis-dummy-log-engine.log temporary file.
                
            References
                    Configurations
                    History
                    No history.
Information
                Published : 2008-11-05 15:00
Updated : 2025-04-09 00:30
NVD link : CVE-2008-4947
Mitre link : CVE-2008-4947
CVE.ORG link : CVE-2008-4947
JSON object : View
Products Affected
                guus_sliepen
- dhis-server
CWE
                
                    
                        
                        CWE-59
                        
            Improper Link Resolution Before File Access ('Link Following')
