10
CVSSv2

CVE-2000-0733

Published: 20/10/2000 Updated: 05/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Telnetd telnet server in IRIX 5.2 up to and including 6.1 does not properly cleans user-injected format strings, which allows remote malicious users to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request.

Vulnerable Product Search on Vulmon Subscribe to Product

sgi irix 6.4

sgi irix 6.5

sgi irix 6.5.1

sgi irix 6.5.2m

sgi irix 6.1

sgi irix 6.3

sgi irix 6.5.3

sgi irix 6.5.3m

sgi irix 5.3

sgi irix 6.0

sgi irix 6.0.1

sgi irix 6.5.6

sgi irix 6.5.7

sgi irix 6.5.8

sgi irix 5.2

sgi irix 6.2

sgi irix 6.5.3f

sgi irix 6.5.4

Exploits

source: wwwsecurityfocuscom/bid/1572/info A vulnerability exists in the telnet daemon shipped with Irix versions 62 through 658, and in patched versions of the telnet daemon in Irix 52 through 61, from Silicon Graphics (SGI) The telnetd will blindly use data passed by the user in such a way as to make it possible for a remote attack ...