Логотип exploitDog
bind:CVE-2002-2040
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2002-2040

Количество 2

Количество 2

nvd логотип

CVE-2002-2040

около 23 лет назад

The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly drop privileges before executing the system command, which allows local users to execute arbitrary commands by modifying the PATH environment variable to reference a malicious crttrap program.

CVSS2: 7.2
EPSS: Низкий
github логотип

GHSA-fqc4-8m96-pvh3

почти 4 года назад

The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly drop privileges before executing the system command, which allows local users to execute arbitrary commands by modifying the PATH environment variable to reference a malicious crttrap program.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-2040

The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly drop privileges before executing the system command, which allows local users to execute arbitrary commands by modifying the PATH environment variable to reference a malicious crttrap program.

CVSS2: 7.2
0%
Низкий
около 23 лет назад
github логотип
GHSA-fqc4-8m96-pvh3

The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly drop privileges before executing the system command, which allows local users to execute arbitrary commands by modifying the PATH environment variable to reference a malicious crttrap program.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу