5
CVSSv2

CVE-2002-0333

Published: 25/06/2002 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Directory traversal vulnerability in xtell (xtelld) 1.91.1 and previous versions, and 2.x prior to 2.7, allows remote malicious users to read files with short names, and local users to read more files using a symlink with a short name, via a .. in the TTY argument.

Vulnerable Product Search on Vulmon Subscribe to Product

xtell xtell 1.91.1

xtell xtell 2.6.1

Exploits

source: wwwsecurityfocuscom/bid/4196/info xtell is a simple network messaging program It may be used to transmit terminal messages between users and machines xtell is available for Linux, BSD and most other Unix based operating systems An information disclosure vulnerability has been reported in some versions of xtell When a message ...