CVE-2012-5303

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
05/10/2012
Last modified:
11/04/2025

Description

Monkey HTTP Daemon 0.9.3 might allow local users to overwrite arbitrary files via a symlink attack on a PID file, as demonstrated by a pathname different from the default /var/run/monkey.pid pathname.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:monkey-project:monkey:0.9.3:*:*:*:*:*:*:*