7.2
CVSSv2

CVE-2001-0764

Published: 18/10/2001 Updated: 10/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in ntping in scotty 2.1.0 allows local users to execute arbitrary code via a long hostname as a command line argument.

Vulnerable Product Search on Vulmon Subscribe to Product

juergen schoenwaelder scotty 2.1.8

juergen schoenwaelder scotty 2.1.9

juergen schoenwaelder scotty 2.1.10

juergen schoenwaelder scotty 2.1.7

Exploits

source: wwwsecurityfocuscom/bid/2911/info ntping is a component of scotty, a Tcl interpreter used to retrieve status and configuration information for TCP/IP networks The utility, which runs with root privileges, contains a locally exploitable buffer overflow vulnerability A local attacker can supply a long string as a command line argu ...