Lucene search

K
nvd[email protected]NVD:CVE-2002-1509
HistoryMar 03, 2003 - 5:00 a.m.

CVE-2002-1509

2003-03-0305:00:00
web.nvd.nist.gov
2

CVSS2

3.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:P/A:N

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

24.8%

A patch for shadow-utils 20000902 causes the useradd command to create a mail spool files with read/write privileges of the new user’s group (mode 660), which allows other users in the same group to read or modify the new user’s incoming email.

Affected configurations

Nvd
Node
redhatlinuxMatch7.2
OR
redhatlinuxMatch7.2ia64
OR
redhatlinuxMatch7.3
OR
redhatlinuxMatch8.0
VendorProductVersionCPE
redhatlinux7.2cpe:2.3:o:redhat:linux:7.2:*:*:*:*:*:*:*
redhatlinux7.2cpe:2.3:o:redhat:linux:7.2:*:ia64:*:*:*:*:*
redhatlinux7.3cpe:2.3:o:redhat:linux:7.3:*:*:*:*:*:*:*
redhatlinux8.0cpe:2.3:o:redhat:linux:8.0:*:*:*:*:*:*:*

CVSS2

3.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:P/A:N

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

24.8%

Related for NVD:CVE-2002-1509