IMP/MSWordView /tmp File Permission Vulnerability

Solution:
CThis vulnerability was fixed in versions 2.2-pre11 of IMP. Those wishing to utilize IMP 2.0.11 (the latest stable version) can work around this problem by creating a directory writable by the user MSWordView is run by (typically whoever the web server runs as), and altering the imp/lib/mimetypes.lib file to change t the directory temporary files are made in by MSWordView.


IMP IMP 2.0.10

IMP IMP 2.0.11

IMP IMP 2.0.9

IMP IMP 2.2 -pre9

IMP IMP 2.2 -pre10


 

Privacy Statement
Copyright 2010, SecurityFocus