xmysqladmin 1.0 and earlier allows local users to delete arbitrary files via a symlink attack on a database backup file in /tmp.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Xmysqladmin |
Xmysqladmin |
1.0 (including) |
1.0 (including) |
References