6.2
CVE-2001-0920
- EPSS 0.39%
- Veröffentlicht 26.11.2001 05:00:00
- Zuletzt bearbeitet 16.06.2026 21:55:13
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Format string vulnerability in auto nice daemon (AND) 1.0.4 and earlier allows a local user to possibly execute arbitrary code via a process name containing a format string.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Patrick Schemitz ≫ Autonice Daemon Version1.0.0
Patrick Schemitz ≫ Autonice Daemon Version1.0.1
Patrick Schemitz ≫ Autonice Daemon Version1.0.2
Patrick Schemitz ≫ Autonice Daemon Version1.0.3
Patrick Schemitz ≫ Autonice Daemon Version1.0.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.39% | 0.303 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.2 | 1.9 | 10 |
AV:L/AC:H/Au:N/C:C/I:C/A:C
|
http://and.sourceforge.net/
http://marc.info/?l=bugtraq&m=100680319004162&w=2
http://www.securityfocus.com/bid/3580
https://exchange.xforce.ibmcloud.com/vulnerabilities/7606