Search Results (Refine Search)
- Keyword (text search): cpe:2.3:a:gnu:fingerd:1.37:*:*:*:*:*:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-1999-1165 |
GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (1) gain root privileges via a malicious program in the .fingerrc file, or (2) read arbitrary files via symbolic links from .plan, .forward, or .project files. Published: July 21, 1999; 12:00:00 AM -0400 |
V3.x:(not available) V2.0: 7.2 HIGH |
CVE-1999-0150 |
The Perl fingerd program allows arbitrary command execution from remote users. Published: July 01, 1997; 12:00:00 AM -0400 |
V3.x:(not available) V2.0: 7.5 HIGH |
CVE-1999-0612 |
A version of finger is running that exposes valid user information to any entity on the network. Published: March 01, 1997; 12:00:00 AM -0500 |
V3.x:(not available) V2.0: 0.0 LOW |