6.2
CVE-2002-0211
- EPSS 0.17%
- Published 16.05.2002 04:00:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Race condition in the installation script for Tarantella Enterprise 3 3.01 through 3.20 creates a world-writeable temporary "gunzip" program before executing it, which could allow local users to execute arbitrary commands by modifying the program before it is executed.
Data is provided by the National Vulnerability Database (NVD)
Tarantella ≫ Tarantella Enterprise Version3.3.0
Tarantella ≫ Tarantella Enterprise Version3.3.0.1
Tarantella ≫ Tarantella Enterprise Version3.3.10
Tarantella ≫ Tarantella Enterprise Version3.3.11
Tarantella ≫ Tarantella Enterprise Version3.3.20
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.17% | 0.353 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 6.2 | 1.9 | 10 |
AV:L/AC:H/Au:N/C:C/I:C/A:C
|