CVE-2011-2921
ktsuss versions 1.4 and prior has the uid set to root and does not drop privileges prior to executing user specified commands, which can result in command execution with root privileges.
- Affected products
- Ktsuss
- Ktsuss Project Ktsuss
- ≤ 1.4
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 82.8% (100th percentile)
- Weakness
- CWE-273
- NVD status
- Modified
- Published
- 2019-11-19
CVE-2011-2921 at NVD
5 known exploits for CVE-2011-2921
Proof-of-concept code and exploit modules indexed by Sploitus