7.5
CVSSv2

CVE-2006-0681

Published: 15/02/2006 Updated: 20/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Format string vulnerability in powerd.c in Power Daemon (powerd) 2.0.2 and previous versions allows remote malicious users to execute arbitrary code via format string specifiers in the WHATIDO variable.

Vulnerable Product Search on Vulmon Subscribe to Product

power daemon power daemon 2.0.0

power daemon power daemon 2.0.0.1

power daemon power daemon 2.0.1

power daemon power daemon 2.0.1.1

power daemon power daemon 2.0.2

Exploits

/* * gexp-powerdc * * Power Daemon v202 Remote Format String Exploit * Copyright (C) 2005 Gotfault Security * * Bug found and developed by: barros and xgc * * Original Reference: * gotfaultnet/research/exploit/gexp-powerdc * */ #include <getopth> #include <sys/typesh> #include <sys/socketh> #include < ...