Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2003-0847Linux vulnerability

4 documents4 sources
Severity
4.6MEDIUMNVD
EPSS
0.4%
top 41.66%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedNov 17
Latest updateApr 29

Description

SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symlink attack on the susewm.$$ temporary file.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-769w-m9jq-53m8: SuSEconfig2022-04-29
CVEList
CVE-2003-0847: SuSEconfig2003-10-09

💥Exploits & PoCs

1
Exploit-DB
SuSE Linux Professional 8.2 - SuSEWM Configuration File Insecure Temporary File2003-10-06
CVE-2003-0847 — Suse Linux vulnerability | cvebase