NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 51534 | CVE-2009-4411 | The (1) setfacl and (2) getfacl commands in XFS acl 2.2.47, when running in recursive (-R) mode, follow symbolic links even when the --physical (aka -P) or -L option is specified, which might allow local users to modify the ACL for arbitrary files or directories via a symlink attack. | 2 | 3.7 | Low | 2017-01-07 | 2010-03-04 | View | |
| 1103 | CVE-2008-1142 | rxvt 2.6.4 opens a terminal window on :0 if the DISPLAY environment variable is not set, which might allow local users to hijack X11 connections. NOTE: it was later reported that rxvt-unicode, mrxvt, aterm, multi-aterm, and wterm are also affected. NOTE: realistic attack scenarios require that the victim enters a command on the wrong machine. | 2 | 3.7 | Low | 2017-01-03 | 2009-02-26 | View | |
| 77394 | CVE-2000-1162 | ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack. | 2 | 3.7 | Low | 2017-01-05 | 2008-09-05 | View | |
| 854 | CVE-2008-0883 | acroread in Adobe Acrobat Reader 8.1.2 allows local users to overwrite arbitrary files via a symlink attack on temporary files related to SSL certificate handling. | 2 | 3.7 | Low | 2017-01-03 | 2011-03-07 | View | |
| 42072 | CVE-2013-7347 | Luci in Red Hat Conga does not properly enforce the user session timeout, which might allow attackers to gain access to the session by reading the __ac session cookie. NOTE: this issue has been SPLIT due to different vulnerability types. Use CVE-2012-3359 for the base64-encoded storage of the user and password in a cookie. | 2 | 3.7 | Low | 2017-01-18 | 2014-03-31 | View |
Page 14758 of 17672, showing 5 records out of 88360 total, starting on record 73786, ending on 73790