crontab by Paul Vixie uses predictable file names for a temporary file and does not properly ensure that the file is own
ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.
Race condition in ptrace in Linux kernel 2.4 and 2.2 allows local users to gain privileges by using ptrace to track and
Sendmail before 8.11.4, and 8.12.0 before 8.12.0.Beta10, allows local users to cause a denial of service and possibly co
Lmail 2.7 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
vi as included with SCO OpenServer 5.0 - 5.0.6 allows a local attacker to overwrite arbitrary files via a symlink attack
registrar in the HP resource monitor service allows local users to read and modify arbitrary files by renaming the origi
StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a l
Unknown vulnerability in sockfilter for Linux kernel before 2.2.19 related to "boundary cases," with unknown impact.
Unknown vulnerabilities in strnlen_user for Linux kernel before 2.2.19, with unknown impact.
ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generate
Vulnerability in exuberant-ctags before 3.2.4-0.1 insecurely creates temporary files.
xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are
Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Hor
VMWare creates a temporary file vmware-log.USERNAME with insecure permissions, which allows local users to read or modif
apmscript in Apmd in Red Hat 7.2 "Enigma" allows local users to create or change the modification dates of arbitrary fil
Apple MacOS X 10.0 and 10.1 allow a local user to read and write to a user's desktop folder via insecure default permiss
RunAs (runas.exe) in Windows 2000 allows local users to create a spoofed named pipe when the service is stopped, then ca
htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink
Mac OS Runtime for Java (MRJ) 2.2.3 allows remote attackers to use malicious applets to read files outside of the CODEBA
Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE ele
The ActiveX control for invoking a scriptlet in Internet Explorer 5.0 through 5.5 renders arbitrary file types instead o
A function in Internet Explorer 5.0 through 5.5 does not properly verify the domain of a frame within a browser window,
eEye Iris 1.01 beta allows remote attackers to cause a denial of service via a malformed packet, which causes Iris to cr
pgp4pine Pine/PGP interface version 1.75-6 does not properly check to see if a public key has expired when obtaining the
Windows 98 and Windows 2000 Java clients allow remote attackers to cause a denial of service via a Java applet that open
Microsoft Internet Explorer 5.0 through 6.0 allows attackers to cause a denial of service (browser crash) via a crafted
Some telnet clients allow remote telnet servers to request environment variables from the client that may contain sensit
ghostscript before 6.51 allows local users to read and write arbitrary files as the 'lp' user via the file operator, eve
Thibault Godouet FCron prior to 1.1.1 allows a local user to corrupt another user's crontab file via a symlink attack on
Internet Explorer 5.0, and possibly other versions, may allow remote attackers (malicious web pages) to read known text
Cross-site scripting (XSS) vulnerability in user.php in PostNuke 0.64 allows remote attackers to inject arbitrary web sc
The xp_showcolv function in SQL Server and Microsoft SQL Server Desktop Engine (MSDE) does not properly restrict the len
Recourse ManTrap 1.6 does not properly hide processes from attackers, which could allow attackers to determine that they
Recourse ManTrap 1.6 modifies the kernel so that ".." does not appear in the /proc listing, which allows attackers to de
Recourse ManTrap 1.6 generates an error when an attacker cd's to /proc/self/cwd and executes the pwd command, which allo
Recourse ManTrap 1.6 hides the first 4 processes that run on a Solaris system, which allows attackers to determine that
Recourse ManTrap 1.6 sets up a chroot environment to hide the fact that it is running, but the inode number for the resu
Recourse ManTrap 1.6 allows attackers to cause a denial of service via a sequence of commands that navigate into and out
Arrowpoint (aka Cisco Content Services, or CSS) allows local users to cause a denial of service via a long argument to t
Directory traversal vulnerability in Arrowpoint (aka Cisco Content Services, or CSS) allows local unprivileged users to
procfs in FreeBSD and possibly other operating systems allows local users to cause a denial of service by calling mmap o
The installation of J-Pilot creates the .jpilot directory with the user's umask, which could allow local attackers to re
dialog before 0.9a-20000118-3bis in Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attac
gpg (aka GnuPG) 1.0.4 and other versions does not properly verify detached signatures, which allows attackers to modify
Buffer overflow in the find_default_type function in libsecure in NSA Security-enhanced Linux, which may allow attackers
in.mond in Sun Cluster 2.x allows local users to read arbitrary files via a symlink attack on the status file of a host
Support Tools Manager (STM) A.22.00 for HP-UX allows local users to overwrite arbitrary files via a symlink attack on th
Vulnerability in top in HP-UX 11.04 and earlier allows local users to overwrite files owned by the "sys" group.
The "mxcsr P4" vulnerability in the Linux kernel before 2.2.17-14, when running on certain Intel CPUs, allows local user
Scan for 2001 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started