Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2005-1065

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Novell Linux Desktop 9中的tetex使得本地用户可以通过/var/cache/fonts目录中的symlink攻击来测定任意文件的存在。

AI Predicted 3.7 Difficulty: Easy EPSS 0.38% · P31
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2005-1065

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
tetex in Novell Linux Desktop 9 allows local users to determine the existence of arbitrary files via a symlink attack in the /var/cache/fonts directory.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
SUSE Tetex临时文件创建泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Novell Linux Desktop 9中的tetex使得本地用户可以通过/var/cache/fonts目录中的symlink攻击来测定任意文件的存在。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2005-1065

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-1065

登录查看更多情报信息。

Vendor Advisories for CVE-2005-1065 (1)

Same Patch Batch · n/a · 2005-04-12 · 44 CVEs total

CVE-2005-1074 RadScripts RadBids Gold多个漏洞
CVE-2005-1077 XAMPP Guestbook-EN.PL远程HTML注入漏洞
CVE-2005-1076 WebCT Discussion Board 跨站脚本攻击漏洞
CVE-2005-1078 XAMPP不安全默认密码泄露漏洞
CVE-2005-1081 Azerbaijan Development Group AzDGDatingPlatinum多个漏洞
CVE-2005-1082 Azerbaijan Development Group AzDGDatingPlatinum多个SQL注入漏洞
CVE-2005-1083 AEwebworks Dating Software AeDating Index.PHP本地文件包含漏洞
CVE-2005-1084 AEwebworks Dating Software AeDating Sdating.PHP SQL注入漏洞
CVE-2005-1085 AEwebworks Dating Software AeDating控制面板跨站脚本漏洞
CVE-2005-1080 Sun SDK Java Archive目录遍历漏洞
CVE-2005-1075 RadScripts RadBids Gold漏洞
CVE-2005-1073 RadScripts RadBids Gold多个漏洞
CVE-2005-1072 PunBB跨站脚本漏洞
CVE-2005-1071 JPortal Banner.PHP SQL注入漏洞
CVE-2005-1070 Invision Power Board 1.3.1及更低版本SQL注入漏洞
CVE-2005-1069 sCssBoard多个漏洞
CVE-2005-1068 SCSSBoard URL Tag 跨站脚本攻击漏洞
CVE-2005-1067 PHP Access_User Class绕过任意帐号认证漏洞
CVE-2005-1066 Pine RPDump本地文件破坏漏洞
CVE-2005-1064 RSnapshot本地文件许可操作漏洞

Showing top 20 of 44 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-1065

No comments yet


Leave a comment