Show filters
56 Total Results
Displaying 41-50 of 56
Sort by:
Attacker Value
Unknown

CVE-2001-0142

Disclosure Date: March 12, 2001 (last updated February 22, 2025)
squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.
0
Attacker Value
Unknown

CVE-2001-0116

Disclosure Date: March 12, 2001 (last updated February 22, 2025)
gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack.
0
Attacker Value
Unknown

CVE-2001-0139

Disclosure Date: March 12, 2001 (last updated February 22, 2025)
inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
0
Attacker Value
Unknown

CVE-2001-0125

Disclosure Date: March 12, 2001 (last updated February 22, 2025)
exmh 2.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the exmhErrorMsg temporary file.
0
Attacker Value
Unknown

CVE-2000-1134

Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
0
Attacker Value
Unknown

CVE-2000-1043

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
Format string vulnerability in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.
0
Attacker Value
Unknown

CVE-2000-1059

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an "xhost + localhost" command, which allows local users to sniff X Windows events and gain privileges.
0
Attacker Value
Unknown

CVE-2000-1042

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
Buffer overflow in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.
0
Attacker Value
Unknown

CVE-2000-0883

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
The default configuration of mod_perl for Apache as installed on Mandrake Linux 6.1 through 7.1 sets the /perl/ directory to be browseable, which allows remote attackers to list the contents of that directory.
0
Attacker Value
Unknown

CVE-2000-0844

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0