Total vulnerabilities in the database
OpenSSH version 2.9 and earlier, with X forwarding enabled, allows a local attacker to delete any file named 'cookies' via a symlink attack.
CVSS v2:
No CWE or OWASP classifications available.