6.2
CVE-2002-0211
- EPSS 0.17%
- Veröffentlicht 16.05.2002 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
Race condition in the installation script for Tarantella Enterprise 3 3.01 through 3.20 creates a world-writeable temporary "gunzip" program before executing it, which could allow local users to execute arbitrary commands by modifying the program before it is executed.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tarantella ≫ Tarantella Enterprise Version3.3.0
Tarantella ≫ Tarantella Enterprise Version3.3.0.1
Tarantella ≫ Tarantella Enterprise Version3.3.10
Tarantella ≫ Tarantella Enterprise Version3.3.11
Tarantella ≫ Tarantella Enterprise Version3.3.20
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.17% | 0.353 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.2 | 1.9 | 10 |
AV:L/AC:H/Au:N/C:C/I:C/A:C
|