Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2003-08-27 CVE-2003-0656 Unspecified vulnerability in Eroaster 2.0.0/2.1.0/2.2.0
eroaster before 2.2.0 allows local users to overwrite arbitrary files via a symlink attack on a temporary file that is used as a lockfile.
local
low complexity
eroaster
2.1
2003-08-27 CVE-2003-0642 Unspecified vulnerability in Watchguard Serverlock
WatchGuard ServerLock for Windows 2000 before SL 2.0.4 allows local users to access kernel memory via a symlink attack on \Device\PhysicalMemory.
local
low complexity
watchguard
2.1
2003-08-27 CVE-2003-0603 Unspecified vulnerability in Mozilla Bugzilla
Bugzilla 2.16.x before 2.16.3, 2.17.x before 2.17.4, and earlier versions allows local users to overwrite arbitrary files via a symlink attack on temporary files that are created in directories with group-writable or world-writable permissions.
local
low complexity
mozilla
2.1
2003-08-27 CVE-2003-0596 Unspecified vulnerability in Fdclone 2.00A
FDclone 2.00a, and other versions before 2.02a, creates temporary directories with predictable names and uses them if they already exist, which allows local users to read or modify files of other fdclone users by creating the directory ahead of time.
local
low complexity
fdclone
3.6
2003-08-27 CVE-2003-0547 GDM before 2.4.1.6, when using the "examine session errors" feature, allows local users to read arbitrary files via a symlink attack on the ~/.xsession-errors file.
local
low complexity
gnome redhat
2.1
2003-08-27 CVE-2003-0462 A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc/base.c on Linux 2.4 allows local users to cause a denial of service (crash).
local
high complexity
mandrakesoft linux
1.2
2003-08-27 CVE-2003-0461 Unspecified vulnerability in Redhat Linux
/proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.
local
low complexity
redhat
2.1
2003-08-18 CVE-2003-0536 Unspecified vulnerability in PHPsysinfo 2.0/2.1
Directory traversal vulnerability in phpSysInfo 2.1 and earlier allows attackers with write access to a local directory to read arbitrary files as the PHP user or cause a denial of service via ..
local
low complexity
phpsysinfo
3.6
2003-08-15 CVE-1999-1263 Unspecified vulnerability in Metamail Corporation Metamail
Metamail before 2.7-7.2 allows remote attackers to overwrite arbitrary files via an e-mail message containing a uuencoded attachment that specifies the full pathname for the file to be modified, which is processed by uuencode in Metamail scripts such as sun-audio-file.
network
high complexity
metamail-corporation
2.6
2003-08-07 CVE-2003-0501 Unspecified vulnerability in Linux Kernel 2.6.20.1
The /proc filesystem in Linux allows local users to obtain sensitive information by opening various entries in /proc/self before executing a setuid program, which causes the program to fail to change the ownership and permissions of those entries.
local
low complexity
linux
2.1