10
CVSSv2

CVE-2000-0493

Published: 01/06/2000 Updated: 10/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote malicious users to cause a denial of service and possibly execute arbitrary commands via a long string.

Vulnerable Product Search on Vulmon Subscribe to Product

atrius trivalie sn time sync 1.0.1

Exploits

source: wwwsecurityfocuscom/bid/1289/info A scanf overflow has been discovered in the Simple Network Time Sync daemon and client version 10 Currently the buffer overflow has been tested on RedHat 61 It may be possible to obtain root, although it appears one only has 50 characters to run code with #!/usr/bin/perl -w # # Usage: /kill ...