NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
38241  CVE-2013-2142  userpref.c in libimobiledevice 1.1.4, when $HOME and $XDG_CONFIG_HOME are not set, allows local users to overwrite arbitrary files via a symlink attack on (1) HostCertificate.pem, (2) HostPrivateKey.pem, (3) libimobiledevicerc, (4) RootCertificate.pem, or (5) RootPrivateKey.pem in /tmp/root/.config/libimobiledevice/.    3.3  Low  2017-01-18  2014-01-21  View
15458  CVE-2010-4173  The default configuration of libsdp.conf in libsdp 1.1.104 and earlier creates log files in /tmp, which allows local users to overwrite arbitrary files via a (1) symlink or (2) hard link attack on the libsdp.log.##### temporary file.    3.3  Low  2017-01-18  2010-11-30  View
39778  CVE-2013-4116  lib/npm.js in Node Packaged Modules (npm) before 1.3.3 allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names that are created when unpacking archives.    3.3  Low  2017-01-18  2014-04-23  View
20835  CVE-2016-5604  Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.5 allows local users to affect confidentiality and integrity via vectors related to Security Framework, a different vulnerability than CVE-2016-3563.    3.3  Low  2017-01-19  2016-11-28  View
81252  CVE-2002-2301  Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a world-readable file, which allows local users to read the passwords and log onto the database.    3.3  Low  2017-01-05  2008-09-05  View

Page 2488 of 17672, showing 5 records out of 88360 total, starting on record 12436, ending on 12440

Actions