CVE-2005-2104
Published Oct 7, 2005sysreport before 1.3.7 allows local users to obtain sensitive information via a symlink attack on a temporary directory.
Vendor/product archive
2 CVEs tagged to redhat / sysreport — 0 Critical, 1 High, 0 Medium, 1 Low, 0 Unrated.
sysreport before 1.3.7 allows local users to obtain sensitive information via a symlink attack on a temporary directory.
sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the password for a proxy server in plaintext and allows local users to gain privileges.