CVE-2004-2231 - Elysian Appearances
Description
Zero G Software InstallAnywhere 5.0.6 5.0.7 and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) persistent_state or (2) env.properties.X temporary files.
Reference
http://www.idefense.com/application/poi/display?id=82&type=vulnerabilities http://vapid.dhs.org/zerogadv.txt http://www.securityfocus.com/bid/10808 http://www.osvdb.org/8236 http://secunia.com/advisories/12129 https://exchange.xforce.ibmcloud.com/vulnerabilities/16791