CVE-2002-1713

The Standard security setting for Mandrake-Security package (msec) in Mandrake 8.2 installs home directories with world-readable permissions, which could allow local users to read other user's files.
References
Link Resource
http://online.securityfocus.com/archive/1/277515 Broken Link Third Party Advisory VDB Entry
http://www.kb.cert.org/vuls/id/455323 Third Party Advisory US Government Resource
http://www.securityfocus.com/bid/5050 Broken Link Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/9389 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:o:mandrakesoft:mandrake_linux:8.2:*:*:*:*:*:*:*

History

08 Feb 2024, 15:50

Type Values Removed Values Added
CVSS v2 : 2.1
v3 : unknown
v2 : 2.1
v3 : 5.5
CWE NVD-CWE-Other CWE-276
References (BID) http://www.securityfocus.com/bid/5050 - (BID) http://www.securityfocus.com/bid/5050 - Broken Link, Third Party Advisory, VDB Entry
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/9389 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/9389 - Third Party Advisory, VDB Entry
References (BUGTRAQ) http://online.securityfocus.com/archive/1/277515 - (BUGTRAQ) http://online.securityfocus.com/archive/1/277515 - Broken Link, Third Party Advisory, VDB Entry

Information

Published : 2002-12-31 05:00

Updated : 2024-02-28 10:24


NVD link : CVE-2002-1713

Mitre link : CVE-2002-1713

CVE.ORG link : CVE-2002-1713


JSON object : View

Products Affected

mandrakesoft

  • mandrake_linux
CWE
CWE-276

Incorrect Default Permissions