CVE-2000-0733
Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request.
- Sgi Irix
- = 5.2, 5.3, 6.0, 6.0.1, 6.1, 6.2, 6.3, 6.4, 6.5, 6.5.1, 6.5.2m, 6.5.3, 6.5.3f, 6.5.3m, 6.5.4, 6.5.6, 6.5.7, 6.5.8
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 12.4% (96th percentile)
- NVD status
- Modified
- Published
- 2000-10-13
CVE-2000-0733 at NVD
1 known exploit for CVE-2000-0733
Proof-of-concept code and exploit modules indexed by Sploitus