VYPR
High severity7.8NVD Advisory· Published Nov 10, 2016· Updated May 6, 2026

CVE-2016-7490

CVE-2016-7490

Description

The installation script studioexpressinstall for Teradata Studio Express 15.12.00.00 creates files in /tmp insecurely. A malicious local user could create a symlink in /tmp and possibly clobber system files or perhaps elevate privileges.

Affected products

2
  • cpe:2.3:a:teradata:studio_express:15.12.00.00:*:*:*:*:*:*:*
  • Teradata/Studio Expressv5
    Range: 15.12.00.00

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.