Lucene search

K
cveMitreCVE-2005-0240
HistoryMay 02, 2005 - 4:00 a.m.

CVE-2005-0240

2005-05-0204:00:00
mitre
web.nvd.nist.gov
20
vulnerability
format string
chdev
ibm aix 5.2
arbitrary code execution

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.001

Percentile

20.8%

Format string vulnerability in chdev on IBM AIX 5.2 allows local users to execute arbitrary code via format string specifiers in a command line argument, which is not properly handled when printing an error message.

Affected configurations

Nvd
Node
ibmaixMatch5.2
VendorProductVersionCPE
ibmaix5.2cpe:2.3:o:ibm:aix:5.2:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.001

Percentile

20.8%

Related for CVE-2005-0240