Security Advisory
CVE-2004-0481
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The logging feature in kcms_configure in the KCMS package on Solaris 8 and 9, and possibly other versions, allows local users to corrupt arbitrary files via a symlink attack on the KCS_ClogFile file.