AI Score
Confidence
Low
EPSS
Percentile
95.0%
Format string vulnerability in the LogMsg function in sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code via format string specifiers passed from the HandleCPCCommand function.
cvs.lysator.liu.se/viewcvs/viewcvs.cgi/sercd/sercd.c?root=sercd
secunia.com/advisories/12351
securitytracker.com/id?1011038
www.osvdb.org/8375
www.osvdb.org/9104
www.securityfocus.com/bid/11002
www.securityfocus.com/bid/11031
exchange.xforce.ibmcloud.com/vulnerabilities/17056