CVE-2001-0891
 
Severity Score
7.2
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gain root privileges by using qsub to submit a batch job whose name contains formatting characters.
Vulnerabilidad en el formateado de cadenas en el demonio NQS (nqsdaemon) en NQE 3.3.0.16 para CRAY UNICOS permite que un usuario local obtenga privilegios de root usando qsub para enviar un proceso job cuyo nombre contiene caracteres de formatado.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2002-01-16 CVE Reserved
- 2002-01-31 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-08 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://marc.info/?l=bugtraq&m=100695627423924&w=2 | Mailing List | |
http://www.osvdb.org/3275 | Vdb Entry | |
http://www.securityfocus.com/bid/3590 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7618 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
ftp://patches.sgi.com/support/free/security/advisories/20020101-01-I | 2017-10-10 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sgi Search vendor "Sgi" | Nqsdaemon Search vendor "Sgi" for product "Nqsdaemon" | 3.3.0.16 Search vendor "Sgi" for product "Nqsdaemon" and version "3.3.0.16" | - |
Affected
| ||||||
Cray Search vendor "Cray" | Unicos Search vendor "Cray" for product "Unicos" | * | - |
Affected
|