CVE-2001-0559
crontab in Vixie cron 3.0.1 and earlier does not properly drop privileges after the failed parsing of a modification operation, which could allow a local attacker to gain additional privileges when an editor is called to correct the error.
- Affected products
- Debian, Vixie Cron
- Paul Vixie Vixie Cron
- ≤ 3.0.1
- CVSS 2.0
- 7.2 HIGH
- EPSS
- 1.1% (63th percentile)
- NVD status
- Modified
- Published
- 2002-03-09
CVE-2001-0559 at NVD
2 known exploits for CVE-2001-0559
Proof-of-concept code and exploit modules indexed by Sploitus