CVE-2001-1487

MEDIUM
CVSS v3
4.6CVSS v2
0.20% EPSS (exploit probability)
CWE

Description

popauth utility in Qualcomm Qpopper 4.0 and earlier allows local users to overwrite arbitrary files and execute commands as the pop user via a symlink attack on the -trace file option.

Affected routers (1)

VendorModelMatched viaAffected versionsFixed inPatch Status
Ubiquiti Ubiquiti EdgeRouter 4 Unpatched

External references