Using a fixed string could allow for abuse by anyone who has access to /tmp. One could place a symbolic link to any file to cause it to be overwritten when alternc.install is run. |
||
|---|---|---|
| .. | ||
| apparmor | ||
| upgrades | ||
| alternc.install | ||
| body_checks | ||
| domaines.template | ||
| dopo.sh | ||
| header_checks | ||
| mysql.sh | ||
| mysql.sql | ||
| newone.php | ||
| reset_root.php | ||
| upgrade_check.sh | ||
| variables.php | ||