Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2002-08-12 CVE-2002-0638 setpwnam.c in the util-linux package, as included in Red Hat Linux 7.3 and earlier, and other operating systems, does not properly lock a temporary file when modifying /etc/passwd, which may allow local users to gain privileges via a complex race condition that uses an open file descriptor in utility programs such as chfn and chsh.
local
high complexity
mandrakesoft hp redhat
6.2
2002-08-12 CVE-2002-0617 Unspecified vulnerability in Microsoft Excel and Office
The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by creating a hyperlink on a drawing shape in a source workbook that points to a destination workbook containing an autoexecute macro, aka "Hyperlinked Excel Workbook Macro Bypass."
network
high complexity
microsoft
5.1
2002-08-12 CVE-2002-0616 Unspecified vulnerability in Microsoft Excel and Office
The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by attaching an inline macro to an object within an Excel workbook, aka the "Excel Inline Macros Vulnerability."
network
high complexity
microsoft
5.1
2002-08-12 CVE-2002-0534 Denial Of Service vulnerability in PostBoard BBCode
PostBoard 2.0.1 and earlier with BBcode allows remote attackers to cause a denial of service (CPU consumption) and corrupt the database via null \0 characters within [code] tags.
network
low complexity
postboard
5.0
2002-08-12 CVE-2002-0533 Unspecified vulnerability in PHPbb Group PHPbb
phpBB 1.4.4 and earlier with BBcode allows remote attackers to cause a denial of service (CPU consumption) and corrupt the database via null \0 characters within [code] tags.
network
low complexity
phpbb-group
5.0
2002-08-12 CVE-2002-0531 Unspecified vulnerability in Emumail Emumail, Emumail RED HAT Linux and Emumail Unix
Directory traversal vulnerability in emumail.cgi in EMU Webmail 4.5.x and 5.1.0 allows remote attackers to read arbitrary files or list arbitrary directories via a ..
network
low complexity
emumail
5.0
2002-08-12 CVE-2002-0530 Cross-Site Scripting vulnerability in Novell web Search 2.0.1
Cross-site scripting vulnerability in Novell Web Search 2.0.1 allows remote attackers to execute arbitrary script as other Web Search users via the search parameter.
network
high complexity
novell
5.1
2002-08-12 CVE-2002-0529 Unspecified vulnerability in HP Photosmart Print Driver 1.2.1
HP Photosmart printer driver for Mac OS X installs the hp_imaging_connectivity program and the hp_imaging_connectivity.app directory with world-writable permissions, which allows local users to gain privileges of other Photosmart users by replacing hp_imaging_connectivity with a Trojan horse.
local
high complexity
hp
6.2
2002-08-12 CVE-2002-0527 Unspecified vulnerability in Watchguard Soho Firewall 5.0.28/5.0.29/5.0.31
Watchguard SOHO firewall before 5.0.35 allows remote attackers to cause a denial of service (crash and reboot) when SOHO forwards a packet with bad IP options.
network
low complexity
watchguard
5.0
2002-08-12 CVE-2002-0524 Information Disclosure vulnerability in ASP-Nuke Forged Cookie
ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect cookies, or (2) calling Post.asp with certain arguments, which leak the pathname in an error message.
network
low complexity
asp-nuke
5.0