Debian Backup-Manager vulnerabilities
4 known vulnerabilities affecting debian/backup-manager.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1LOW2
Vulnerabilities
Page 1 of 1
CVE-2007-2766P4LOWCVSS 7.2fixed in backup-manager 0.7.6-1 (bookworm)2007
CVE-2007-2766 [HIGH] CVE-2007-2766: backup-manager - lib/backup-methods.sh in Backup Manager before 0.7.6 provides the MySQL password...
lib/backup-methods.sh in Backup Manager before 0.7.6 provides the MySQL password as a plaintext command line argument, which allows local users to obtain this password by listing the process and its arguments, related to lib/backup-methods.sh.
Scope: local
bookworm: resolved (fixed in 0.7.6-1)
bullseye: resolved (fixed in 0.7.6-1)
forky: resolved (fixed in 0.7.
debian
CVE-2007-4656P4HIGHCVSS 7.2fixed in backup-manager 0.7.6-3 (bookworm)2007
CVE-2007-4656 [HIGH] CVE-2007-4656: backup-manager - backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hos...
backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hostname, username, and password as plaintext command line arguments during FTP uploads, which allows local users to obtain sensitive information by listing the process and its arguments, a different vulnerability than CVE-2007-2766.
Scope: local
bookworm: resolved (fixed in 0.7.6-3)
b
debian
CVE-2005-1855P4MEDIUMCVSS 2.1fixed in backup-manager 0.5.8-2 (bookworm)2005
CVE-2005-1855 [LOW] CVE-2005-1855: backup-manager - Backup Manager (backup-manager) before 0.5.8 creates backup files with world-rea...
Backup Manager (backup-manager) before 0.5.8 creates backup files with world-readable default permissions, which allows local users to obtain sensitive information.
Scope: local
bookworm: resolved (fixed in 0.5.8-2)
bullseye: resolved (fixed in 0.5.8-2)
forky: resolved (fixed in 0.5.8-2)
sid: resolved (fixed in 0.5.8-2)
trixie: resolved (fixed in 0.5.8-2)
debian
CVE-2005-1856P4LOWCVSS 2.1fixed in backup-manager 0.5.8-2 (bookworm)2005
CVE-2005-1856 [LOW] CVE-2005-1856: backup-manager - The CD-burning feature in backup-manager 0.5.8 and earlier uses a fixed filename...
The CD-burning feature in backup-manager 0.5.8 and earlier uses a fixed filename in a world-writable directory for logging, which allows local users to overwrite files via a symlink attack.
Scope: local
bookworm: resolved (fixed in 0.5.8-2)
bullseye: resolved (fixed in 0.5.8-2)
forky: resolved (fixed in 0.5.8-2)
sid: resolved (fixed in 0.5.8-2)
trixie: resolved
debian