CVE-2002-0793
Last modified
CVE-2002-0793 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrite arbitrary files via (1) the -f argument to the monitor utility, (2) the -d argument to dumper, (3) the -c argument to crttrap, or (4) using the Watcom sample utility.. EPSS estimates a 1.34% chance of exploitation in the next 30 days.
Description
Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrite arbitrary files via (1) the -f argument to the monitor utility, (2) the -d argument to dumper, (3) the -c argument to crttrap, or (4) using the Watcom sample utility.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Blackberry | Qnx Neutrino Real-Time Operating System | 4.25 |
References
- http://archives.neohapsis.com/archives/bugtraq/2002-05/0292.htmlBroken Link, Exploit, Vendor Advisory
- http://www.iss.net/security_center/static/9231.phpBroken Link, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/4901Broken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/4902Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory
- http://www.securityfocus.com/bid/4903Broken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/4904Broken Link, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/9232Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/9233Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/9234Third Party Advisory, VDB Entry
- http://archives.neohapsis.com/archives/bugtraq/2002-05/0292.htmlBroken Link, Exploit, Vendor Advisory
- http://www.iss.net/security_center/static/9231.phpBroken Link, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/4901Broken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/4902Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory
- http://www.securityfocus.com/bid/4903Broken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/4904Broken Link, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/9232Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/9233Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/9234Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-0793?
How severe is CVE-2002-0793?
How do I fix CVE-2002-0793?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-0787Cross-site scripting vulnerabilities in iCon administrative …
- CVE-2002-0788An interaction between PGP 7.0.3 with the "wipe deleted file…5.5
- CVE-2002-0789Buffer overflow in search.cgi in mnoGoSearch 3.1.19 and earl…
- CVE-2002-0790clchkspuser and clpasswdremote in AIX expose an encrypted pa…
- CVE-2002-0791Novell Netware FTP server NWFTPD before 5.02r allows remote …
- CVE-2002-0792The web management interface for Cisco Content Service Switc…
- CVE-2002-0794The accept_filter mechanism in FreeBSD 4 through 4.5 does no…
- CVE-2002-0795The rc system startup script for FreeBSD 4 through 4.5 allow…
- CVE-2002-0796Format string vulnerability in the logging component of snmp…
- CVE-2002-0797Buffer overflow in the MIB parsing component of mibiisa for …
- CVE-2002-0798Vulnerability in swinstall for HP-UX 11.00 and 11.11 allows …
- CVE-2002-0799Buffer overflow in YoungZSoft CMailServer 3.30 allows remote…
Are you affected by CVE-2002-0793?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
