4.6
CVE-2003-1169
- EPSS 0.82%
- Veröffentlicht 31.12.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:03:38
- Erkennungen
DATEV Nutzungskontrolle 2.1 and 2.2 has insecure write permissions for critical registry keys, which allows local users to bypass access restrictions by importing NukoInfo values in certain DATEV keys, which disables Nutzungskontrolle.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Datev ≫ Nutzungskontrolle Version 2.1
Datev ≫ Nutzungskontrolle Version 2.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.82% | 0.524 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
http://lists.grok.org.uk/pipermail/full-disclosure/2003-November/013113.html
http://www.securityfocus.com/bid/8950
https://exchange.xforce.ibmcloud.com/vulnerabilities/13589