CVE-2008-5155
Severity CVSS v4.0:
Pending analysis
Type:
CWE-59
Link Following
Publication date:
18/11/2008
Last modified:
09/04/2025
Description
mail2sms.sh in smsclient 2.0.8z allows local users to overwrite arbitrary files via a symlink attack on a (1) /tmp/header.##### or (2) /tmp/body.##### temporary file, or append data to arbitrary files via a symlink attack on the (3) /tmp/sms.log temporary file.
Impact
Base Score 2.0
9.30
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:smsclient:smsclient:2.0.8z:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page