Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-2026

Опубликовано: 31 дек. 2004
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Format string vulnerability in the logmsg function in svc.c for Pound 1.5 and earlier allows remote attackers to execute arbitrary code via format string specifiers in syslog messages.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:apsis:pound:1.0:*:*:*:*:*:*:*
cpe:2.3:a:apsis:pound:1.1:*:*:*:*:*:*:*
cpe:2.3:a:apsis:pound:1.2:*:*:*:*:*:*:*
cpe:2.3:a:apsis:pound:1.3:*:*:*:*:*:*:*
cpe:2.3:a:apsis:pound:1.4:*:*:*:*:*:*:*
cpe:2.3:a:apsis:pound:1.5:*:*:*:*:*:*:*

EPSS

Процентиль: 93%
0.0664
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

debian
больше 21 года назад

Format string vulnerability in the logmsg function in svc.c for Pound ...

github
больше 4 лет назад

Format string vulnerability in the logmsg function in svc.c for Pound 1.5 and earlier allows remote attackers to execute arbitrary code via format string specifiers in syslog messages.

EPSS

Процентиль: 93%
0.0664
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other