Security Advisory
CVE-2013-1495
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
asr in Oracle Auto Service Request in Oracle Support Tools before 4.3.2 allows local users to modify arbitrary files via a symlink attack on a predictable filename in /tmp.