7.5
CVE-2005-0523
- EPSS 9.87%
- Veröffentlicht 02.05.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:11:17
- Erkennungen
Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the Location header.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Prozilla ≫ Prozilla Download Accelerator Version 1.3.0
Prozilla ≫ Prozilla Download Accelerator Version 1.3.1
Prozilla ≫ Prozilla Download Accelerator Version 1.3.2
Prozilla ≫ Prozilla Download Accelerator Version 1.3.3
Prozilla ≫ Prozilla Download Accelerator Version 1.3.4
Prozilla ≫ Prozilla Download Accelerator Version 1.3.5
Prozilla ≫ Prozilla Download Accelerator Version 1.3.5.1
Prozilla ≫ Prozilla Download Accelerator Version 1.3.5.2
Prozilla ≫ Prozilla Download Accelerator Version 1.3.6
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 9.87% | 0.95 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://deicide.siyahsapka.org/exploits/proz_ex2.c
http://www.debian.org/security/2005/dsa-719
http://www.securiteam.com/exploits/5WP082KEUW.html
http://www.securityfocus.com/bid/12635