Worker Filemanager 1.0 through 2.7 sets the permissions on the destination directory to world-readable and executable while copying data, which could allow local users to obtain sensitive information.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.boomerangsworld.de/worker/wchanges.php3?lang=en | |
http://www.securityfocus.com/bid/7460 | vdb entry patch |