10

CVE-2004-1192

Format string vulnerability in the lprintf function in Citadel/UX 6.27 and earlier allows remote attackers to execute arbitrary code via format string specifiers sent to the server.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Citadel ≫ Ux Version 6.07
Citadel ≫ Ux Version 6.08
Citadel ≫ Ux Version 6.23
Citadel ≫ Ux Version 6.24
Citadel ≫ Ux Version 6.26
Citadel ≫ Ux Version 6.27
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 11.75% 0.955
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://marc.info/?l=bugtraq&m=110295469430696&w=2
http://marc.info/?l=bugtraq&m=110304986223400&w=2
http://www.nosystem.com.ar/advisories/advisory-09.txt
https://exchange.xforce.ibmcloud.com/vulnerabilities/18429