CVE-2004-0510
SCO OpenServer 5.0.7 - MMDF deliver Privilege Escalation
Severity Score
9.8
*CVSS v3
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
3
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Multiple buffer overflows in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to execute arbitrary code, as demonstrated via the execmail program.
Múltiples desbordamientos de búfer en MMDF sobre OpenServer 5.0.6 y 5.0.7, y posiblemente otros sistemas operativos, puede permitir a atacantes ejecutar código de su elección, como se ha demostrado utilizando el programa execmail
Multiple vulnerabilities have been found in the MMDF binaries included with SCO Openserver versions 5.0.6 and 5.0.7. These include buffer overflows, null dereferences, and core dumps.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2004-06-01 CVE Reserved
- 2004-07-20 CVE Published
- 2004-10-26 First Exploit
- 2024-08-08 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://marc.info/?l=bugtraq&m=109889281711636&w=2 | Mailing List | |
http://www.deprotect.com/advisories/DEPROTECT-20040206.txt | Url Repurposed | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16738 | Vdb Entry |
URL | Date | SRC |
---|---|---|
https://packetstorm.news/files/id/34740 | 2004-10-26 | |
https://www.exploit-db.com/exploits/602 | 2019-09-06 | |
http://www.securityfocus.com/bid/10758 | 2024-08-08 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2004.7/SCOSA-2004.7.txt | 2024-02-14 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sco Search vendor "Sco" | Openserver Search vendor "Sco" for product "Openserver" | 5.0.6 Search vendor "Sco" for product "Openserver" and version "5.0.6" | - |
Affected
| ||||||
Sco Search vendor "Sco" | Openserver Search vendor "Sco" for product "Openserver" | 5.0.6a Search vendor "Sco" for product "Openserver" and version "5.0.6a" | - |
Affected
| ||||||
Sco Search vendor "Sco" | Openserver Search vendor "Sco" for product "Openserver" | 5.0.7 Search vendor "Sco" for product "Openserver" and version "5.0.7" | - |
Affected
|