CVE-2013-3368

EPSS 0.04%

request-tracker3.8 - several

Published: 8/23/2013Modified: 4/28/2026

Description

bin/rt in Request Tracker (RT) 3.8.x before 3.8.17 and 4.0.x before 4.0.13 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with predictable name.

Affected packages (2)

References (1)