Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2002-0678
Description:CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2002-0678
AIX APAR: IY32368
http://archives.neohapsis.com/archives/aix/2002-q3/0002.html
AIX APAR: IY32370
http://archives.neohapsis.com/archives/aix/2002-q3/0002.html
BugTraq ID: 5083
http://www.securityfocus.com/bid/5083
Bugtraq: 20020710 [CORE-20020528] Multiple vulnerabilities in ToolTalk Database server (Google Search)
http://marc.info/?l=bugtraq&m=102635906423617&w=2
Caldera Security Advisory: CSSA-2002-SCO.28
ftp://ftp.caldera.com/pub/updates/OpenUNIX/CSSA-2002-SCO.28/CSSA-2002-SCO.28.txt
Cert/CC Advisory: CA-2002-20
http://www.cert.org/advisories/CA-2002-20.html
CERT/CC vulnerability note: VU#299816
http://www.kb.cert.org/vuls/id/299816
HPdes Security Advisory: HPSBUX0207-199
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0207-199
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A175
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2770
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A80
SGI Security Advisory: 20021101-01-P
ftp://patches.sgi.com/support/free/security/advisories/20021101-01-P
XForce ISS Database: tooltalk-ttdbserverd-tttransaction-symlink(9527)
http://www.iss.net/security_center/static/9527.php




© 1998-2025 E-Soft Inc. All rights reserved.