Page 28 of 146 results (0.006 seconds)

CVSS: 7.2EPSS: 0%CPEs: 11EXPL: 1

Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable. • https://www.exploit-db.com/exploits/19474 http://www.securityfocus.com/bid/611 •

CVSS: 6.4EPSS: 0%CPEs: 3EXPL: 0

Remote attackers can cause a denial of service on Linux in.telnetd telnet daemon through a malformed TERM environmental variable. • http://www.securityfocus.com/bid/594 •

CVSS: 7.5EPSS: 6%CPEs: 2EXPL: 1

The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attackers to use it as an intermediary to connect to other systems. • https://www.exploit-db.com/exploits/20465 http://fedoranews.org/updates/FEDORA--.shtml http://www.debian.org/security/2004/dsa-576 http://www.redhat.com/archives/fedora-announce-list/2005-May/msg00025.html http://www.redhat.com/support/errata/RHSA-1999-025.html http://www.redhat.com/support/errata/RHSA-2005-489.html http://www.redhat.com/support/errata/archives/rh52-errata-general.html#squid http://www.securityfocus.com/bid/2059 https://exchange.xforce.ibmcloud.com/vuln •

CVSS: 7.2EPSS: 0%CPEs: 30EXPL: 1

The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing. • https://www.exploit-db.com/exploits/19255 http://marc.info/?l=bugtraq&m=94935300520617&w=2 •

CVSS: 4.6EPSS: 0%CPEs: 14EXPL: 1

XFree86 startx command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service. • https://www.exploit-db.com/exploits/19257 https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0433 •