NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
51534  CVE-2009-4411  The (1) setfacl and (2) getfacl commands in XFS acl 2.2.47, when running in recursive (-R) mode, follow symbolic links even when the --physical (aka -P) or -L option is specified, which might allow local users to modify the ACL for arbitrary files or directories via a symlink attack.    3.7  Low  2017-01-07  2010-03-04  View
1103  CVE-2008-1142  rxvt 2.6.4 opens a terminal window on :0 if the DISPLAY environment variable is not set, which might allow local users to hijack X11 connections. NOTE: it was later reported that rxvt-unicode, mrxvt, aterm, multi-aterm, and wterm are also affected. NOTE: realistic attack scenarios require that the victim enters a command on the wrong machine.    3.7  Low  2017-01-03  2009-02-26  View
77394  CVE-2000-1162  ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.    3.7  Low  2017-01-05  2008-09-05  View
854  CVE-2008-0883  acroread in Adobe Acrobat Reader 8.1.2 allows local users to overwrite arbitrary files via a symlink attack on temporary files related to SSL certificate handling.    3.7  Low  2017-01-03  2011-03-07  View
42072  CVE-2013-7347  Luci in Red Hat Conga does not properly enforce the user session timeout, which might allow attackers to gain access to the session by reading the __ac session cookie. NOTE: this issue has been SPLIT due to different vulnerability types. Use CVE-2012-3359 for the base64-encoded storage of the user and password in a cookie.    3.7  Low  2017-01-18  2014-03-31  View

Page 14758 of 17672, showing 5 records out of 88360 total, starting on record 73786, ending on 73790

Actions