7.2

CVE-2003-0703

KisMAC before 0.05d trusts user-supplied variables to load arbitrary kernels or kernel modules, which allows local users to gain privileges via the $DRIVER_KEXT environment variable as used in (1) viha_driver.sh, (2) macjack_load.sh, or (3) airojack_load.sh, or (4) via "similar techniques" using exchangeKernel.sh.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
KismacKismac Version0.05d
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.34% 0.257
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.atstake.com/research/advisories/2003/a082203-1.txt
Patch
Vendor Advisory
http://www.securityfocus.com/bid/8497
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/13007
https://exchange.xforce.ibmcloud.com/vulnerabilities/13008