First published: Mon Jan 08 2007(Updated: )
The Perforce client does not restrict the set of files that it overwrites upon receiving a request from the server, which allows remote attackers to overwrite arbitrary files by modifying the client config file on the server, or by operating a malicious server.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Perforce Client | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0100 has a medium severity rating due to its potential for remote exploitation and file overwriting.
To fix CVE-2007-0100, ensure that the Perforce client is configured to restrict file overwriting and regularly audit client configuration settings.
CVE-2007-0100 specifically impacts the Perforce Client, which is used in version control and collaborative development environments.
Attackers can exploit CVE-2007-0100 to overwrite arbitrary files on a user's system by manipulating the client config file or operating a malicious server.
It is recommended to check for updates and patches directly from Perforce to mitigate the risks associated with CVE-2007-0100.