CVE-2002-0525
Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious NNTP servers to gain privileges via format string specifiers in NTTP responses.
- Affected products
- Inn
- Isc Inn
- = 2.0, 2.1, 2.2, 2.2.1, 2.2.2, 2.2.3
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 4.1% (90th percentile)
- NVD status
- Modified
- Published
- 2002-06-11
CVE-2002-0525 at NVD
1 known exploit for CVE-2002-0525
Proof-of-concept code and exploit modules indexed by Sploitus