6.9
CVE-2008-0217
- EPSS 0.04%
- Veröffentlicht 16.01.2008 02:00:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
- Quelle secteam@freebsd.org
- CVE-Watchlists
- Unerledigt
The script program in FreeBSD 5.0 through 7.0-PRERELEASE invokes openpty, which creates a pseudo-terminal with world-readable and world-writable permissions when it is not run as root, which allows local users to read data from the terminal of the user running script.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.068 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.9 | 3.4 | 10 |
AV:L/AC:M/Au:N/C:C/I:C/A:C
|