7.2

CVE-2001-0891

Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gain root privileges by using qsub to submit a batch job whose name contains formatting characters.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sgi ≫ Nqsdaemon Version 3.3.0.16
Cray ≫ Unicos
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.35% 0.266
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
ftp://patches.sgi.com/support/free/security/advisories/20020101-01-I
Patch
Vendor Advisory
http://marc.info/?l=bugtraq&m=100695627423924&w=2
http://www.osvdb.org/3275
http://www.securityfocus.com/bid/3590
https://exchange.xforce.ibmcloud.com/vulnerabilities/7618