2 results (0.004 seconds)

CVSS: 6.9EPSS: 0%CPEs: 1EXPL: 0

08 Dec 2008 — pvpgn-support-installer in pvpgn 1.8.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/pvpgn-support-1.0.tar.gz temporary file. pvpgn-support-installer en pvpgn v1.8.1, permite a usuarios locales sobrescribir ficheros de su elección a través de un ataque de enlace simbólico sobre el fichero temporal /tmp/pvpgn-support-1.0.tar.gz. • http://lists.debian.org/debian-devel/2008/08/msg00283.html • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 9.8EPSS: 0%CPEs: 4EXPL: 0

31 Dec 2004 — Unspecified vulnerability in Player vs. Player Gaming Network (PvPGN) before 1.6.4 allows remote attackers to obtain attributes of arbitrary accounts, including the password hash, via certain statsreq packets. • http://forums.pvpgn.org/index.php/topic%2C2655.0.html •