Skip to content
Noroxi

firehol records

2 published records for vendor firehol.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
50%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    Attack profile

      All records

      2 records
      • CVE-2008-4953
        27Monitor

        firehol in firehol 1.256 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/.firehol-tmp-#####-*-* and (2) /tm

        MediumCVSS 6.9No exploitEPSS 0%

        firehol · fireholNov 5, 2008

      • firehol.sh in FireHOL before 1.224 creates temporary files with predictable file names, which could allow local users to overwrite arbitrary

        LowCVSS 2.1No exploitEPSS 0%

        firehol · fireholMay 2, 2005