Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

14,631 CVEs · Low severity

CVEs (14,631, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 151–175 of 14,631 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2001-0141 LOW 1.2 2001-03-12 mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
CVE-2001-0142 LOW 1.2 2001-03-12 squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.
CVE-2001-0143 LOW 1.2 2001-03-12 vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.
CVE-2000-0890 LOW 1.2 2001-02-16 periodic in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows local users to overwrite arbitrary files via a symlink attack.
CVE-2001-0036 LOW 1.2 2001-02-16 KTH Kerberos IV allows local users to overwrite arbitrary files via a symlink attack on a ticket file.
CVE-2001-0095 LOW 1.2 2001-02-12 catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
CVE-2000-0959 LOW 1.2 2000-12-19 glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to ov…
CVE-2000-1045 LOW 1.2 2000-12-11 nss_ldap earlier than 121, when run with nscd (name service caching daemon), allows remote attackers to cause a denial of service via a flood of LDAP requests.
CVE-2000-0718 LOW 1.2 2000-10-20 A race condition in MandrakeUpdate allows local users to modify RPM files while they are in the /tmp directory before they are installed.
CVE-2000-0723 LOW 1.2 2000-10-20 Helix GNOME Updater helix-update 0.5 and earlier does not properly create /tmp directories, which allows local users to create empty system configuration files such as /etc…
CVE-2000-0210 LOW 1.2 2000-02-21 The lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary files.
CVE-2000-0154 LOW 1.2 2000-02-16 The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack.
CVE-2000-0224 LOW 1.2 2000-02-15 ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink attack.
CVE-1999-1042 LOW 1.2 1999-12-31 Cisco Resource Manager (CRM) 1.0 and 1.1 creates world-readable log files and temporary files, which may expose sensitive information, to local users such as user IDs, pass…
CVE-1999-0475 LOW 1.2 1999-04-05 A race condition in how procmail handles .procmailrc files allows a local user to read arbitrary files available to the user who is running procmail.
CVE-2000-0371 LOW 1.2 1999-03-01 The libmediatool library used for the KDE mediatool allows local users to create arbitrary files via a symlink attack.
CVE-1999-0371 LOW Patched 1.2 1999-02-11 Lynx allows a local user to overwrite sensitive files through /tmp symlinks.
CVE-1999-1480 LOW 1.2 1998-06-11 (1) acledit and (2) aclput in AIX 4.3 allow local users to create or modify files via a symlink attack.
CVE-1999-1486 LOW 1.2 1998-02-25 sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to overwrite arbitrary files via a symlink attack.
CVE-2015-5464 LOW 1.3 2015-07-22 The Gemalto SafeNet Luna HSM allows remote authenticated users to bypass intended key-export restrictions by leveraging (1) crypto-user or (2) crypto-officer access to an H…
CVE-2011-2242 LOW 1.3 2011-07-20 Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.2.0.1 and 11.2.0.2 allows local users to affect confidentiality, related to XML DB FTP.
CVE-2016-0618 LOW 1.4 2016-01-21 Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect confidentiality via unknown vectors related to Zones.
CVE-2014-2485 LOW 1.4 2014-07-17 Unspecified vulnerability in the Siebel Core - EAI component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows local users to affect confidentiality via unknown vectors related t…
CVE-2016-0498 LOW 1.5 2016-01-21 Unspecified vulnerability in the Oracle Agile Engineering Data Management component in Oracle Supply Chain Products Suite 6.1.2.2, 6.1.3.0, and 6.2.0.0 allows local users t…
CVE-2015-4878 LOW 1.5 2015-10-21 Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.5.2 allows local users to affect availability via un…