2 results (0.004 seconds)

CVSS: 10.0EPSS: 0%CPEs: 4EXPL: 0

Unknown vulnerability in apcupsd before 3.8.6, and 3.10.x before 3.10.5, allows remote attackers to gain root privileges, possibly via format strings in a request to a slave server. Vulnerabilidad desconocida en apcupsd anteriores a 3.8.6, y 3.10.x anteriores a 3.10.5 permite a atacantes remotos ganar privilegios de root, posiblemente mediante cadenas de formato en una petición a un servidor esclavo. • ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2003-015.0.txt http://cvs.sourceforge.net/cgi-bin/viewcvs.cgi/apcupsd/apcupsd/src/apcnisd.c.diff?r1=1.5&r2=1.6 http://hsj.shadowpenguin.org/misc/apcupsd_exp.txt http://securitytracker.com/id?1006108 http://sourceforge.net/project/shownotes.php?release_id=137900 http://www.debian.org/security/2003/dsa-277 http://www.iss.net/security_center/static/11334.php http://www.mandriva.com/security/advisories?name=MDKSA-2003:018 h •

CVSS: 7.2EPSS: 0%CPEs: 1EXPL: 0

Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may allow attackers to cause a denial of service or execute arbitrary code, related to usage of the vsprintf function. Múltiples desbordamientos de búfer en apcupsd anteriores a 3.10.5 pueden permitir a atacantes causar una denegación de servicio o ejecutar código arbitrario, relacionado con el uso de la función vsprintf. • ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2003-015.0.txt http://securitytracker.com/id?1006108 http://sourceforge.net/project/shownotes.php?release_id=137892 http://sourceforge.net/project/shownotes.php?release_id=137900 http://www.debian.org/security/2003/dsa-277 http://www.iss.net/security_center/static/11491.php http://www.mandriva.com/security/advisories?name=MDKSA-2003:018 http://www.novell.com/linux/security/advisories/2003_022_apcupsd.html http://www.securityfocus.c •