CVE-2012-0054: Golismero

Low severity, CVSS 3.3. EPSS: 0.3% chance of exploitation in the next 30 days.

libs/updater.py in GoLismero 0.6.3, and other versions before Git revision 2b3bb43d6867, as used in backtrack and possibly other products, allows local users to overwrite arbitrary files via a symlink attack on GoLismero-controlled files, as demonstrated using Admin/changes.dat.

Affected products

Published 2012-03-19. Last modified 2026-06-16.