Lucene search

K
cve[email protected]CVE-2004-0396
HistoryJun 14, 2004 - 4:00 a.m.

CVE-2004-0396

2004-06-1404:00:00
web.nvd.nist.gov
31
cve-2004-0396
buffer overflow
cvs
security vulnerability
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.7 High

AI Score

Confidence

Low

0.969 High

EPSS

Percentile

99.7%

Heap-based buffer overflow in CVS 1.11.x up to 1.11.15, and 1.12.x up to 1.12.7, when using the pserver mechanism allows remote attackers to execute arbitrary code via Entry lines.

Affected configurations

NVD
Node
cvscvsMatch1.11
OR
cvscvsMatch1.12
CPENameOperatorVersion
cvs:cvscvseq1.11
cvs:cvscvseq1.12

References

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.7 High

AI Score

Confidence

Low

0.969 High

EPSS

Percentile

99.7%