René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

116 lines
3.3 KiB
JSON

{
"id": "CVE-2002-0525",
"sourceIdentifier": "cve@mitre.org",
"published": "2002-08-12T04:00:00.000",
"lastModified": "2008-09-05T20:28:15.180",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious NNTP servers to gain privileges via format string specifiers in NTTP responses."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 10.0
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": true,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:isc:inn:2.0:*:*:*:*:*:*:*",
"matchCriteriaId": "A2480B45-A626-49F5-A48B-BA6DFAA4411B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:isc:inn:2.1:*:*:*:*:*:*:*",
"matchCriteriaId": "21969A37-9F10-4D70-AC73-F3DB4D169AEB"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:isc:inn:2.2:*:*:*:*:*:*:*",
"matchCriteriaId": "94FD2948-EF52-464B-A605-DA3806037762"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:isc:inn:2.2.1:*:*:*:*:*:*:*",
"matchCriteriaId": "1CC41E6D-B892-4888-8AEE-12287935F570"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:isc:inn:2.2.2:*:*:*:*:*:*:*",
"matchCriteriaId": "7DED2B74-71B6-467C-8B07-F6F728AD7BF4"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:isc:inn:2.2.3:*:*:*:*:*:*:*",
"matchCriteriaId": "862E58CF-7194-421D-9E7D-60DB8AA1F9CB"
}
]
}
]
}
],
"references": [
{
"url": "http://archives.neohapsis.com/archives/bugtraq/2002-04/0140.html",
"source": "cve@mitre.org"
},
{
"url": "http://www.iss.net/security_center/static/8834.php",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securityfocus.com/bid/4501",
"source": "cve@mitre.org",
"tags": [
"Exploit",
"Patch",
"Vendor Advisory"
]
}
]
}