Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
paul szabo vulnerabilities and exploits
(subscribe to this query)
187
VMScore
CVE-2003-0207
ps2epsi creates insecure temporary files when calling ghostscript, which allows local malicious users to overwrite arbitrary files.
Gs-common Gs-common 0.3.3
187
VMScore
CVE-2003-0367
znew in the gzip package allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Gnu Gzip
Debian Debian Linux 2.2
Debian Debian Linux 3.0
187
VMScore
CVE-1999-1332
gzexe in the gzip package on Red Hat Linux 5.0 and previous versions allows local users to overwrite files of other users via a symlink attack on a temporary file.
Redhat Linux
107
VMScore
CVE-2005-0448
Race condition in the rmtree function in File::Path.pm in Perl prior to 5.8.4 allows local users to create arbitrary setuid binaries in the tree being deleted, a different vulnerability than CVE-2004-0452.
Larry Wall Perl 5.8.0
Larry Wall Perl 5.8.1
Larry Wall Perl 5.8.3
Larry Wall Perl 5.8.4
409
VMScore
CVE-2003-0202
The (1) halstead and (2) gather_stats scripts in metrics 1.0 allow local users to overwrite arbitrary files via a symlink attack on temporary files.
Brian Renaud Metrics 1.0
828
VMScore
CVE-2008-2383
CRLF injection vulnerability in xterm allows user-assisted malicious users to execute arbitrary commands via LF (aka \n) characters surrounding a command name within a Device Control Request Status String (DECRQSS) escape sequence in a text file, a related issue to CVE-2003-0063 ...
Invisible-island Xterm Nil
1 Github repository
725
VMScore
CVE-2008-5394
/bin/login in shadow 4.0.18.1 in Debian GNU/Linux, and probably other Linux distributions, allows local users in the utmp group to overwrite arbitrary files via a symlink attack on a temporary file referenced in a line (aka ut_line) field in a utmp entry.
Debian Shadow 4.0.18.1
1 EDB exploit
935
VMScore
CVE-2006-7236
The default configuration of xterm on Debian GNU/Linux sid and possibly Ubuntu enables the allowWindowOps resource, which allows user-assisted malicious users to execute arbitrary code or have unspecified other impact via escape sequences.
Invisible-island Xterm Nil
1 EDB exploit
505
VMScore
CVE-2008-2382
The protocol_client_msg function in vnc.c in the VNC server in (1) Qemu 0.9.1 and previous versions and (2) KVM kvm-79 and previous versions allows remote malicious users to cause a denial of service (infinite loop) via a certain message.
Qemu Qemu 0.8.0
Qemu Qemu 0.7.2
Qemu Qemu 0.5.3
Qemu Qemu 0.5.2
Qemu Qemu
Qemu Qemu 0.3.0
Qemu Qemu 0.2.0
Qemu Qemu 0.1.4
Qemu Qemu 0.7.1
Qemu Qemu 0.7.0
Qemu Qemu 0.5.1
Qemu Qemu 0.5.0
Qemu Qemu 0.1.1
Qemu Qemu 0.1.2
Qemu Qemu 0.8.2
Qemu Qemu 0.8.1
Qemu Qemu 0.5.5
Qemu Qemu 0.5.4
Qemu Qemu 0.4.1
Qemu Qemu 0.4.0
Qemu Qemu 0.1.6
Qemu Qemu 0.1.3
1 EDB exploit
650
VMScore
CVE-2002-2351
Eudora 5.1 allows remote malicious users to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot).
Qualcomm Eudora 5.2.1
Qualcomm Eudora 6.0.1
Qualcomm Eudora 6.1.1
Qualcomm Eudora 5.1
Qualcomm Eudora 5.2
Qualcomm Eudora 6.0
2 EDB exploits
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »