Total vulnerabilities in the database
zhcon before 0.2 does not drop privileges before reading a user configuration file, which allows local users to read arbitrary files.
CVSS v2:
No CWE or OWASP classifications available.