First published: Fri Jul 27 2001(Updated: )
The Nirvana Editor (NEdit) 5.1.1 and earlier allows a local attacker to overwrite other users' files via a symlink attack on (1) backup files or (2) temporary files used when nedit prints a file or portions of a file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sajjad67 Wp Edit Username | <=5.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2001-0556 is considered to be moderate due to the potential for local file overwrites.
To fix CVE-2001-0556, update to NEdit version 5.1.2 or later, which addresses the symlink vulnerability.
Any user of NEdit versions 5.1.1 and earlier on a local machine is potentially affected by CVE-2001-0556.
CVE-2001-0556 is associated with a symlink attack that allows overwriting of files by exploiting backup or temporary files.
An attacker can overwrite other users' files locally by exploiting the vulnerability in NEdit when printing or using backup files.