users software vulnerabilities
vulnerabilities.aspcode.net
Searching users software vulnerabilities
AIX routed allows remote users to modify sensit
sensitive
|
remote
|
modify
|
routed
|
allows
|
files
|
users
|
AIX
|
AIX routed allows remote users to modify sensitive files.
Local users can execute commands as other users
commands
|
through
|
command
|
symlink
|
package
|
execute
|
filter
|
elm-24
|
attack
|
users'
|
other
|
users
|
using
|
files
|
Local
|
read
|
mail
|
can
|
Elm
|
Local users can execute commands as other users, and read other users' files, through the filter command in the Elm elm-2.4 mail package using a symlink attack.
Windows NT 4.0 beta allows users to read and de
Windows
|
delete
|
allows
|
shares
|
users
|
beta
|
read
|
Windows NT 4.0 beta allows users to read and delete shares.
Windows NT RSHSVC program allows remote users t
arbitrary
|
commands
|
execute
|
Windows
|
program
|
allows
|
RSHSVC
|
remote
|
users
|
Windows NT RSHSVC program allows remote users to execute arbitrary commands.
Buffer overflow in Linux su command gives root
overflow
|
command
|
access
|
Buffer
|
local
|
users
|
Linux
|
gives
|
root
|
Buffer overflow in Linux su command gives root access to local users.
The default permissions for UnixWare /var/mail
permissions
|
/var/mail
|
UnixWare
|
default
|
modify
|
users'
|
other
|
local
|
allow
|
users
|
mail
|
read
|
The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail.
Vulnerability in KDE konsole allows local users
Vulnerability
|
accessing
|
sessions
|
observe
|
devices
|
konsole
|
certain
|
allows
|
hijack
|
local
|
users
|
other
|
KDE
|
Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain devices.
pt_chmod in Solaris 8 does not call fdetach to
privileges
|
terminals
|
modifying
|
terminal
|
pt_chmod
|
fdetach
|
Solaris
|
users'
|
allows
|
which
|
other
|
write
|
local
|
reset
|
users
|
does
|
call
|
ACL
|
TTY
|
not
|
log
|
out
|
pt_chmod in Solaris 8 does not call fdetach to reset terminal privileges when users log out of terminals, which allows local users to write to other users' terminals by modifying the ACL of a TTY.
The default Access Control Lists (ACLs) of the
Control
|
default
|
Access
|
Lists
|
The default Access Control Lists (ACLs) of the administration database for ZMerge 4.x and 5.x provides arbitrary users (including anonymous users) with Manager level access, which allows the users to read or modify import/export scripts.
ICQLite 2003a creates the ICQ Lite directory wi
Interactive
|
executables
|
privileges
|
directory
|
replacing
|
malicious
|
Control"
|
programs
|
creates
|
ICQLite
|
allows
|
local
|
other
|
2003a
|
"Full
|
which
|
Users
|
Lite
|
gain
|
ICQ
|
ACE
|
ICQLite 2003a creates the ICQ Lite directory with an ACE for "Full Control" privileges for Interactive Users, which allows local users to gain privileges as other users by replacing the executables with malicious programs.
Unknown vulnerability in mail for Solaris 2.6 t
vulnerability
|
Solaris
|
through
|
Unknown
|
allows
|
email
|
other
|
users
|
local
|
mail
|
read
|
Unknown vulnerability in mail for Solaris 2.6 through 9 allows local users to read the email of other users.
Scalable OGo (SOGo) 1.0 allows remote authentic
Scalable
|
OGo
|
Scalable OGo (SOGo) 1.0 allows remote authenticated users to bypass intended permissions and view private appointments of other users.
Unspecified vulnerability in cmdline.c in proxy
vulnerability
|
proxytunnel
|
Unspecified
|
cmdlinec
|
Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (username or password) of other users.
helvis 1.8h2_1 and earlier allows local users t
recover
|
program
|
earlier
|
18h2_1
|
elvrec
|
setuid
|
allows
|
helvis
|
other
|
users
|
local
|
files
|
read
|
via
|
helvis 1.8h2_1 and earlier allows local users to recover and read the files of other users via the elvrec setuid program.
The change password functionality in Bottomline
functionality
|
authenticated
|
Application
|
Bottomline
|
passwords
|
Webseries
|
password
|
require
|
Payment
|
remote
|
users'
|
change
|
could
|
allow
|
which
|
users
|
enter
|
other
|
does
|
not
|
old
|
new
|
The change password functionality in Bottomline Webseries Payment Application does not require the old password when users enter a new password, which could allow remote authenticated users to change other users' passwords.
Vulnerability in Access_user Class before 1.75
Vulnerability
|
Access_user
|
before
|
Class
|
Vulnerability in Access_user Class before 1.75 allows local users to gain access as other users via the password "new".
Serendipity before 0.8 allows Chief users to "h
Serendipity
|
installed
|
plugins
|
users"
|
before
|
allows
|
other
|
Chief
|
users
|
"hide
|
Serendipity before 0.8 allows Chief users to "hide plugins installed by other users."
Unspecified vulnerability in [SYSEXE]SMPUTIL.EX
[SYSEXE]SMPUTILEXE
|
vulnerability
|
Unspecified
|
"remote
|
service
|
OpenVMS
|
users"
|
allows
|
denial
|
cause
|
local
|
users
|
73-2
|
Unspecified vulnerability in [SYSEXE]SMPUTIL.EXE in HP OpenVMS 7.3-2 allows local users and "remote users" to cause a denial of service (crash).
phpProfiles before 2.1.1 uses world writable pe
phpProfiles
|
before
|
phpProfiles before 2.1.1 uses world writable permissions for certain profile files and directories, which allows local users to modify or delete files, related to (1) users/include/do_makeprofile.inc.php and (2) users/include/copy.inc.php.
mycontacts.php in V3 Chat allows remote authent
authenticated
|
mycontactsphp
|
membername
|
privileges
|
parameter
|
modified
|
allows
|
remote
|
other
|
users
|
Chat
|
gain
|
via
|
mycontacts.php in V3 Chat allows remote authenticated users to gain privileges as other users via a modified membername parameter.
Software vulnerabilities results 1 to 20 of 3984
Page:
1
2
3
4
5
...
200
►