Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2001-03-26 CVE-2001-0170 glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.
local
low complexity
immunix conectiva debian redhat
2.1
2001-03-26 CVE-2001-0169 When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.
local
low complexity
mandrakesoft redhat trustix turbolinux
2.1
2001-03-12 CVE-2001-0143 vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.
local
high complexity
immunix redhat
1.2
2001-03-12 CVE-2001-0142 squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations. 1.2
2001-03-12 CVE-2001-0141 Unspecified vulnerability in Gert Doering Mgetty 1.1.22
mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
local
high complexity
gert-doering
1.2
2001-03-12 CVE-2001-0140 arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
local
high complexity
immunix mandrakesoft redhat
1.2
2001-03-12 CVE-2001-0139 inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
local
high complexity
caldera immunix debian mandrakesoft redhat
1.2
2001-03-12 CVE-2001-0138 privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack.
local
high complexity
immunix debian mandrakesoft redhat
1.2
2001-03-12 CVE-2001-0135 Unspecified vulnerability in Ultrascripts Ultraboard 2.11
The default installation of Ultraboard 2000 2.11 creates the Skins, Database, and Backups directories with world-writeable permissions, which could allow local users to modify sensitive information or possibly insert and execute CGI programs.
local
low complexity
ultrascripts
2.1
2001-03-12 CVE-2001-0132 Unspecified vulnerability in Trend Micro Interscan Viruswall 3.0.1
Interscan VirusWall 3.6.x and earlier follows symbolic links when uninstalling the product, which allows local users to overwrite arbitrary files via a symlink attack.
local
high complexity
trend-micro
1.2