Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2001-0556

EPSS 0.05% · P15
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2001-0556

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The Nirvana Editor (NEdit) 5.1.1 and earlier allows a local attacker to overwrite other users' files via a symlink attack on (1) backup files or (2) temporary files used when nedit prints a file or portions of a file.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
NEdit 临时文件符号链接漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
CVE(CAN) ID: CAN-2001-0556 NEdit 是 Nirvana editor 的缩写,一种自由发放的文本编辑器,很多Unix系统携带 它。NEdit提供了一个图形化前端,功能类似微软平台和苹果机上的文本编辑器。 当用户使用NEdit时,会在当前目录下创建使用两个临时文件,一个是~filename,一 个是filename.bck。如果当前目录是全局可写的,恶意的本地用户可以提前建立两个 符号链接,使用NEdit的用户可能破坏任意自己有权写入的文件。 <* 来源:Jarno Huusk
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2001-0556

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2001-0556

登录查看更多情报信息。

Same Patch Batch · n/a · 2001-07-27 · 61 CVEs total

CVE-2001-0600Lotus Domino服务拒绝漏洞
CVE-2001-0632Sun Chili!Soft权限许可和访问控制漏洞
CVE-2001-0620iPlanet Calendar Server获取Netscape Admin Server (NAS) LDAP数据库的访问权限且读取任意文件漏洞
CVE-2001-0619Lucent Closed Network协议加入无访问权限的Closed Network网络漏洞
CVE-2001-0618Orinoco RG-1000 wireless Residential Gateway确定WEB密钥且加密RG-1000交易漏洞
CVE-2001-0623Linux Simple Asynchronous File Transfer (SAFT)提升特权漏洞
CVE-2001-0604Lotus Domino服务拒绝漏洞
CVE-2001-0603Lotus Domino R5服务拒绝漏洞
CVE-2001-0602Lotus Domino R5服务拒绝漏洞
CVE-2001-0601Lotus Domino服务拒绝漏洞
CVE-2001-0605Headlight Software MyGetright下载覆盖文件漏洞
CVE-2001-0599Sybase Anywhere 数据库引擎缓冲区溢出漏洞
CVE-2001-0598Symantec Ghost的配置服务器拒绝服务的漏洞
CVE-2001-0597Strip密码生成器有限密码空间漏洞
CVE-2001-0592Watchguard Firebox内核服务拒绝漏洞
CVE-2001-0588SCO OpenServer MMDF包 sendmail权限许可和访问控制漏洞
CVE-2001-0587SCO OpenServer deliver 本地缓冲区溢出
CVE-2001-0584Alt-N MDaemon IMAP DoS漏洞
CVE-2001-0583Alt-N Technologies Mdaemon拒绝服务漏洞
CVE-2001-0582CrushFTP目录遍历漏洞

Showing top 20 of 61 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2001-0556

No comments yet


Leave a comment