2 results (0.002 seconds)

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 1

26 Nov 2007 — buttonpressed.sh in scanbuttond 0.2.3 allows local users to overwrite arbitrary files via a symlink attack on the (1) scan.pnm and (2) scan.jpg temporary files. buttonpressed.sh de scanbuttond 0.2.3 permite a usuarios locales sobrescribir ficheros de su elección mediante un ataque de enlaces simbólicos en los ficheros temporales (1) scan.pnm y (2) scan.jpg • http://osvdb.org/42422 • CWE-16: Configuration •

CVSS: 9.8EPSS: 2%CPEs: 10EXPL: 0

04 Oct 2006 — pam_ldap in nss_ldap on Red Hat Enterprise Linux 4, Fedora Core 3 and earlier, and possibly other distributions does not return an error condition when an LDAP directory server responds with a PasswordPolicyResponse control response, which causes the pam_authenticate function to return a success code even if authentication has failed, as originally reported for xscreensaver. pam_ldap en nss_ldap sobre Red Hat Enterprise Linux 4, Fedora Core 3 y anteriores, y posiblemente otras distribuciones no devuelven un... • http://bugzilla.padl.com/show_bug.cgi?id=291 • CWE-755: Improper Handling of Exceptional Conditions •