Freshmeat hosted a modest collection of open-source software projects and wrappers, with a durable vulnerability signal centered on symlink-following and link-resolution weaknesses characteristic of tools with file-system interaction surfaces. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Freshmeat over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-4302MEDIUM Multiple race conditions in certain system call wrappers in Generic Software Wrappers Toolkit (GSWTK) allow local users to defeat system call interposition and possibly gain privil | Aug 13, 2007 | 6.2 | 25 | NO | YES |
CVE-2001-1495HIGH network_query.php in Network Query Tool 1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the target parameter. | Dec 31, 2001 | 7.5 | 20 | NO | NO |
CVE-2004-1963MEDIUM nqt.php in Network Query Tool (NQT) 1.6 allows remote attackers to obtain sensitive information via a string in the portNum parameter, which reveals the full path in an error messa | Apr 23, 2004 | 5.0 | 19 | NO | NO |
CVE-2008-0930HIGH w_editeur.c in XWine 1.0.1 for Debian GNU/Linux allows local users to overwrite or print arbitrary files via a symlink attack on the temporaire temporary file. NOTE: some of these | Mar 4, 2008 | 7.2 | 18 | NO | NO |
CVE-2004-1964MEDIUM Cross-site scripting (XSS) vulnerability in nqt.php in Network Query Tool (NQT) 1.6 allows remote attackers to inject arbitrary web script or HTML via the portNum parameter. | Apr 23, 2004 | 4.3 | 18 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Freshmeat.
Media articles that mention a CVE ID that affects a product developed by Freshmeat — matched by CVE ID, not by vendor name.