10
CVSSv2

CVE-2003-0886

Published: 01/12/2003 Updated: 18/10/2016
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Format string vulnerability in hfaxd for Hylafax 4.1.7 and previous versions allows remote malicious users to execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

hylafax hylafax 4.1.1

hylafax hylafax 4.1.2

hylafax hylafax 4.1

hylafax hylafax 4.1.3

hylafax hylafax 4.1.5

hylafax hylafax 4.1.6

hylafax hylafax 4.1.7

Exploits

source: wwwsecurityfocuscom/bid/9005/info Hylafax hfaxd (daemon) has been reported prone to an unspecified format string vulnerability that may be exploited under non-standard configurations to execute arbitrary instructions remotely as the root user /*** Hylafax remote root PoC exploit (C) 2003 Sebastian Krahmer <krahmer@csun ...