Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2002-03-15 CVE-2002-0080 Improper Privilege Management vulnerability in multiple products
rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then read certain files that would otherwise be disallowed.
local
low complexity
samba redhat CWE-269
2.1
2002-03-08 CVE-2002-0069 Denial of Service vulnerability in Squid Cache SNMP
Memory leak in SNMP in Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service.
network
high complexity
squid redhat
2.6
2002-02-13 CVE-2001-1079 Denial-Of-Service vulnerability in IBM AIX 3.2.0
create_keyfiles in PSSP 3.2 with DCE 3.1 authentication on AIX creates keyfile directories with world-writable permissions, which could allow a local user to delete key files and cause a denial of service.
local
low complexity
ibm
3.6
2002-01-31 CVE-2002-0044 GNU Enscript 1.6.1 and earlier allows local users to overwrite arbitrary files of the Enscript user via a symlink attack on temporary files.
local
low complexity
gnu debian redhat
3.6
2002-01-15 CVE-2001-0887 Unspecified vulnerability in Oliver Rauch Xsane 0.81
xSANE 0.81 and earlier allows local users to modify files of other xSANE users via a symlink attack on temporary files.
local
high complexity
oliver-rauch
1.2
2001-12-31 CVE-2001-1578 Local Security vulnerability in SCO Openserver 5.0.6
Unknown vulnerability in SCO OpenServer 5.0.6 and earlier allows local users to modify critical information such as certain CPU registers and segment descriptors.
local
low complexity
sco
2.1
2001-12-31 CVE-2001-1570 Unspecified vulnerability in Microsoft Windows XP
Windows XP with fast user switching and account lockout enabled allows local users to deny user account access by setting the fast user switch to the same user (self) multiple times, which causes other accounts to be locked out.
local
low complexity
microsoft
2.1
2001-12-31 CVE-2001-1565 Authentication Credentials Disclosure vulnerability in Apple Mac OS X PPP
Point to Point Protocol daemon (pppd) in MacOS x 10.0 and 10.1 through 10.1.5 provides the username and password on the command line, which allows local users to obtain authentication information via the ps command.
local
low complexity
apple
2.1
2001-12-31 CVE-2001-1564 Unspecified vulnerability in HP Hp-Ux
setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on processes after setuid or setgid privileges are dropped, which could allow local users to cause a denial of service by exhausting available disk space.
local
low complexity
hp
2.1
2001-12-31 CVE-2001-1560 Denial of Service vulnerability in Microsoft Windows 2000 and Windows XP
Win32k.sys (aka Graphics Device Interface (GDI)) in Windows 2000 and XP allows local users to cause a denial of service (system crash) by calling the ShowWindow function after receiving a WM_NCCREATE message.
local
low complexity
microsoft
2.1