CVE Database

Search and browse vulnerability records from NVD

Showing 8 of 30758 CVEs

CVE ID Severity Description EPSS Published
5.5 MEDIUM

Joe text editor follows symbolic links when creating a rescue copy called DEADJOE during an abnormal exit, which allows local users to overwrite the files of other users whose joe session crashes.

0.1% 2001-01-09
5.5 MEDIUM

HP-UX 11.00 crontab allows local users to read arbitrary files via the -e option by creating a symlink to the target file during the crontab session, quitting the session, and reading the error messages that crontab generates.

1.7% 2000-12-19
5.5 MEDIUM

ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allows local users to obtain sensitive information.

1.0% 2000-06-06
5.5 MEDIUM

Concurrent Versions Software (CVS) uses predictable temporary file names for locking, which allows local users to cause a denial of service by creating the lock directory before it is created for use by a legitimate CVS user.

1.3% 2000-04-23
5.5 MEDIUM

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.

0.2% 1999-12-31
5.5 MEDIUM

FreeBSD allows local users to conduct a denial of service by creating a hard link from a device special file to a file on an NFS file system.

0.2% 1998-06-16
5.4 MEDIUM

Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.

11.0% 1998-04-08
5.4 MEDIUM

Race condition in signal handling routine in ftpd, allowing read/write arbitrary files.

0.3% 1997-05-29