Vulnerabilities > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2002-08-12 | CVE-2002-0638 | setpwnam.c in the util-linux package, as included in Red Hat Linux 7.3 and earlier, and other operating systems, does not properly lock a temporary file when modifying /etc/passwd, which may allow local users to gain privileges via a complex race condition that uses an open file descriptor in utility programs such as chfn and chsh. | 6.2 |
2002-08-12 | CVE-2002-0617 | Unspecified vulnerability in Microsoft Excel and Office The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by creating a hyperlink on a drawing shape in a source workbook that points to a destination workbook containing an autoexecute macro, aka "Hyperlinked Excel Workbook Macro Bypass." | 5.1 |
2002-08-12 | CVE-2002-0616 | Unspecified vulnerability in Microsoft Excel and Office The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by attaching an inline macro to an object within an Excel workbook, aka the "Excel Inline Macros Vulnerability." | 5.1 |
2002-08-12 | CVE-2002-0534 | Denial Of Service vulnerability in PostBoard BBCode PostBoard 2.0.1 and earlier with BBcode allows remote attackers to cause a denial of service (CPU consumption) and corrupt the database via null \0 characters within [code] tags. | 5.0 |
2002-08-12 | CVE-2002-0533 | Unspecified vulnerability in PHPbb Group PHPbb phpBB 1.4.4 and earlier with BBcode allows remote attackers to cause a denial of service (CPU consumption) and corrupt the database via null \0 characters within [code] tags. | 5.0 |
2002-08-12 | CVE-2002-0531 | Unspecified vulnerability in Emumail Emumail, Emumail RED HAT Linux and Emumail Unix Directory traversal vulnerability in emumail.cgi in EMU Webmail 4.5.x and 5.1.0 allows remote attackers to read arbitrary files or list arbitrary directories via a .. | 5.0 |
2002-08-12 | CVE-2002-0530 | Cross-Site Scripting vulnerability in Novell web Search 2.0.1 Cross-site scripting vulnerability in Novell Web Search 2.0.1 allows remote attackers to execute arbitrary script as other Web Search users via the search parameter. | 5.1 |
2002-08-12 | CVE-2002-0529 | Unspecified vulnerability in HP Photosmart Print Driver 1.2.1 HP Photosmart printer driver for Mac OS X installs the hp_imaging_connectivity program and the hp_imaging_connectivity.app directory with world-writable permissions, which allows local users to gain privileges of other Photosmart users by replacing hp_imaging_connectivity with a Trojan horse. | 6.2 |
2002-08-12 | CVE-2002-0527 | Unspecified vulnerability in Watchguard Soho Firewall 5.0.28/5.0.29/5.0.31 Watchguard SOHO firewall before 5.0.35 allows remote attackers to cause a denial of service (crash and reboot) when SOHO forwards a packet with bad IP options. | 5.0 |
2002-08-12 | CVE-2002-0524 | Information Disclosure vulnerability in ASP-Nuke Forged Cookie ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect cookies, or (2) calling Post.asp with certain arguments, which leak the pathname in an error message. | 5.0 |