7.5
CVSSv2

CVE-2002-1281

Published: 29/11/2002 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unknown vulnerability in the rlogin KIO subsystem (rlogin.protocol) of KDE 2.x 2.1 and later, and KDE 3.x 3.0.4 and previous versions, allows local and remote malicious users to execute arbitrary code via a certain URL.

Vulnerable Product Search on Vulmon Subscribe to Product

kde kde 2.2.1

kde kde 2.2.2

kde kde 3.0

kde kde 2.1.2

kde kde 2.2

kde kde 3.0.1

kde kde 3.0.2

kde kde 2.1

kde kde 2.1.1

kde kde 3.0.3

kde kde 3.0.4

Vendor Advisories

The KDE team has discovered a vulnerability in the support for various network protocols via the KIO The implementation of the rlogin and telnet protocols allows a carefully crafted URL in an HTML page, HTML email or other KIO-enabled application to execute arbitrary commands on the system using the victim's account on the vulnerable machine This ...