Vulnerability Details CVE-2001-0913
Format string vulnerability in Network Solutions Rwhoisd 1.5.7.2 and earlier, when using syslog, allows remote attackers to corrupt memory and possibly execute arbitrary code via a rwhois request that contains format specifiers.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.018
EPSS Ranking 82.2%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2001-0913
-
cpe:2.3:a:network_solutions:rwhoisd:1.5
-
cpe:2.3:a:network_solutions:rwhoisd:1.5.1a
-
cpe:2.3:a:network_solutions:rwhoisd:1.5.2
-
cpe:2.3:a:network_solutions:rwhoisd:1.5.3
-
cpe:2.3:a:network_solutions:rwhoisd:1.5.5
-
cpe:2.3:a:network_solutions:rwhoisd:1.5.6
-
cpe:2.3:a:network_solutions:rwhoisd:1.5.7
-
cpe:2.3:a:network_solutions:rwhoisd:1.5.7.1
-
cpe:2.3:a:network_solutions:rwhoisd:1.5.7.2