Lucene search

K
cveMitreCVE-2001-0040
HistoryMay 07, 2001 - 4:00 a.m.

CVE-2001-0040

2001-05-0704:00:00
mitre
web.nvd.nist.gov
35
process id
apcupsd
daemon
local users
arbitrary process kill
nvd.

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.3

Confidence

High

EPSS

0

Percentile

0.4%

APC UPS daemon, apcupsd, saves its process ID in a world-writable file, which allows local users to kill an arbitrary process by specifying the target process ID in the apcupsd.pid file.

Affected configurations

Nvd
Node
apcapcupsdMatch3.7.2
VendorProductVersionCPE
apcapcupsd3.7.2cpe:2.3:a:apc:apcupsd:3.7.2:*:*:*:*:*:*:*

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.3

Confidence

High

EPSS

0

Percentile

0.4%

Related for CVE-2001-0040