NVD

Id
41750  
Name
CVE-2013-6891  
Description
lppasswd in CUPS before 1.7.1, when running with setuid privileges, allows local users to read portions of arbitrary files via a modified HOME environment variable and a symlink attack involving .cups/client.conf.  
Reject
 
CVSS Version
2  
CVSS Score
1.2  
Severity
Low  
CVSS Base Score
1.2  
CVSS Impact Subscore
2.9  
CVSS Exploit Subscore
1.9  
CVSS Vector
(AV:L/AC:H/Au:N/C:P/I:N/A:N)  
Pub Date
2017-01-18  
Published
2014-01-25  
Modified Date
2014-03-05  
Seq
2013-6891  

Actions