CVE-2002-0169
Published May 29, 2002
Last updated 16 years ago
Overview
- Description
- The default stylesheet for DocBook on Red Hat Linux 6.2 through 7.2 is installed with an insecure option enabled, which could allow users to overwrite files outside of the current directory from an untrusted document by using a full pathname as an element identifier.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.6
- Impact score
- 6.4
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:redhat:docbook_stylesheets:1.54.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7FB39657-9421-419D-9F23-7719CD834D78" }, { "criteria": "cpe:2.3:a:redhat:docbook_utils:0.6.9-2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4966560B-32E1-416E-8A56-53D4A9991155" }, { "criteria": "cpe:2.3:a:redhat:docbook_utils:0.6.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DAAC8103-B804-4520-8AF8-67A333E50497" } ], "operator": "OR" } ] } ]