Show filters
56 Total Results
Displaying 41-50 of 56
Sort by:
Attacker Value
Unknown
CVE-2001-0142
Disclosure Date: March 12, 2001 (last updated February 22, 2025)
squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.
0
Attacker Value
Unknown
CVE-2001-0116
Disclosure Date: March 12, 2001 (last updated February 22, 2025)
gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack.
0
Attacker Value
Unknown
CVE-2001-0139
Disclosure Date: March 12, 2001 (last updated February 22, 2025)
inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
0
Attacker Value
Unknown
CVE-2001-0125
Disclosure Date: March 12, 2001 (last updated February 22, 2025)
exmh 2.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the exmhErrorMsg temporary file.
0
Attacker Value
Unknown
CVE-2000-1134
Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
0
Attacker Value
Unknown
CVE-2000-1043
Disclosure Date: December 11, 2000 (last updated February 22, 2025)
Format string vulnerability in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.
0
Attacker Value
Unknown
CVE-2000-1059
Disclosure Date: December 11, 2000 (last updated February 22, 2025)
The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an "xhost + localhost" command, which allows local users to sniff X Windows events and gain privileges.
0
Attacker Value
Unknown
CVE-2000-1042
Disclosure Date: December 11, 2000 (last updated February 22, 2025)
Buffer overflow in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.
0
Attacker Value
Unknown
CVE-2000-0883
Disclosure Date: November 14, 2000 (last updated February 22, 2025)
The default configuration of mod_perl for Apache as installed on Mandrake Linux 6.1 through 7.1 sets the /perl/ directory to be browseable, which allows remote attackers to list the contents of that directory.
0
Attacker Value
Unknown
CVE-2000-0844
Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0