7.2
CVSSv2

CVE-2004-0793

Published: 20/10/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The calendar program in bsdmainutils 6.0 up to and including 6.0.14 does not drop root privileges when executed with the -a flag, which allows malicious users to execute arbitrary commands via a calendar event file.

Vulnerable Product Search on Vulmon Subscribe to Product

debian bsdmainutils 6.0.14

debian bsdmainutils 6.0.6

debian bsdmainutils 6.0.5

debian bsdmainutils 6.0.8

debian bsdmainutils 6.0.7

debian bsdmainutils 6.0

debian bsdmainutils 6.0.13

debian bsdmainutils 6.0.12

debian bsdmainutils 6.0.4

debian bsdmainutils 6.0.3

debian bsdmainutils 6.0.11

debian bsdmainutils 6.0.10

debian bsdmainutils 6.0.9

debian bsdmainutils 6.0.2

debian bsdmainutils 6.0.1