Vulnerabilities > Xscreensaver > Xscreensaver > 4.14

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-2655 Local Password Disclosure vulnerability in Xscreensaver 4.14/4.16/4.17
rdesktop 1.3.1 with xscreensaver 4.14, and possibly other versions, when running on Fedora and possibly other platforms, does not release the keyboard focus when xscreensaver starts, which causes the password to be entered into the active window when the user unlocks the screen.
network
high complexity
xscreensaver
5.4
2003-12-31 CVE-2003-0885 Remote Security vulnerability in Xscreensaver 4.14
Xscreensaver 4.14 contains certain debugging code that should have been omitted, which causes Xscreensaver to create temporary files insecurely in the (1) apple2, (2) xanalogtv, and (3) pong screensavers, and allows local users to overwrite arbitrary files via a symlink attack.
network
low complexity
xscreensaver
6.4