Описание
Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code by causing a negative argument to be provided to the insstr function as used in a NASL script.
Уязвимые конфигурации
Конфигурация 1Версия до 2.0.5 (включая)
cpe:2.3:a:nessus:nessus:*:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00172
Низкий
4.6 Medium
CVSS2
Дефекты
CWE-189
Связанные уязвимости
debian
около 22 лет назад
Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows ...
github
больше 3 лет назад
Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code by causing a negative argument to be provided to the insstr function as used in a NASL script.
EPSS
Процентиль: 39%
0.00172
Низкий
4.6 Medium
CVSS2
Дефекты
CWE-189