Security Advisory

CVE-2004-1604

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-02-20 05:00:00
Last updated 2024-08-08 01:00:36
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

cPanel 9.9.1-RELEASE-3 allows remote authenticated users to chmod arbitrary files via a symlink attack on the _private directory, which is created when Front Page extensions are enabled.