Page 38 of 289 results (0.008 seconds)

CVSS: 5.0EPSS: 1%CPEs: 9EXPL: 0

Unknown vulnerability in the rwho daemon (rwhod) before 0.17, on little endian architectures, allows remote attackers to cause a denial of service (application crash). • http://secunia.com/advisories/14309 http://www.debian.org/security/2005/dsa-678 http://www.mandriva.com/security/advisories?name=MDKSA-2005:039 http://www.novell.com/linux/download/updates/81_i386.html •

CVSS: 4.3EPSS: 1%CPEs: 23EXPL: 0

Cross-site scripting (XSS) vulnerability in start_form() of CGI.pm allows remote attackers to insert web script via a URL that is fed into the form's action parameter. Vulnerabilidad de secuencias de comandos en sitios cruzados en start_form() de CGI.pm permite a atacantes remotos insertar script web mediante una URL que es introducida en parámetro "action" del formulario. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000713 http://marc.info/?l=bugtraq&m=105880349328877&w=2 http://marc.info/?l=bugtraq&m=106018783704468&w=2 http://marc.info/?l=full-disclosure&m=105875211018698&w=2 http://secunia.com/advisories/13638 http://securitytracker.com/id? •

CVSS: 4.6EPSS: 0%CPEs: 2EXPL: 0

The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files. El (1) semi MIME library 1.14.5 y anteriores, y (2) wemi 1.14.0 y posiblemente otras versiones, permiten a usuarios locales la sobreescritura de ficheros arbitrarios mediante un ataque de enlaces simbólicos (symlink attack) en ficheros temporales. • http://www.debian.org/security/2003/dsa-339 http://www.redhat.com/support/errata/RHSA-2003-231.html http://www.redhat.com/support/errata/RHSA-2003-234.html https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A569 https://access.redhat.com/security/cve/CVE-2003-0440 https://bugzilla.redhat.com/show_bug.cgi?id=1617033 •

CVSS: 4.6EPSS: 0%CPEs: 4EXPL: 0

Buffer overflow in Eterm 0.9.2 allows local users to gain privileges via a long ETERMPATH environment variable. Desbordamiento de búfer en Eterm 0.9.2 permite a usuarios locales ganar privilegios mediante una variable de entorno ETERMPATH larga. • http://marc.info/?l=bugtraq&m=105427580626001&w=2 http://www.debian.org/security/2003/dsa-309 http://www.securityfocus.com/bid/7708 •

CVSS: 2.1EPSS: 0%CPEs: 3EXPL: 0

znew in the gzip package allows local users to overwrite arbitrary files via a symlink attack on temporary files. znew en el paquete gzip permite a usuarios locales sobreescribir ficheros arbitrarios mediante un ataque de enlaces simbólicos en ficheros temporales. • http://www.debian.org/security/2003/dsa-308 http://www.mandriva.com/security/advisories?name=MDKSA-2003:068 http://www.openpkg.org/security/OpenPKG-SA-2003.031-gzip.html http://www.securityfocus.com/bid/7872 http://www.turbolinux.com/security/TLSA-2003-38.txt • CWE-20: Improper Input Validation •