CVE-2004-0563

high

Description

The tspc.conf configuration file in freenet6 before 0.9.6 and before 1.0 on Debian Linux has world readable permissions, which could allow local users to gain sensitive information, such as a username and password.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/17544

http://www.securityfocus.com/bid/11280

http://www.debian.org/security/2004/dsa-555

http://securitytracker.com/id?1011460

http://secunia.com/advisories/12705/

Details

Source: Mitre, NVD

Published: 2004-12-23

Updated: 2017-07-11

Risk Information

CVSS v2

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 7.1

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Severity: High