Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-1000367

Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_ttyname() function resulting in information disclosure and command execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.165
EPSS Ranking 94.5%
CVSS Severity
CVSS v3 Score 6.4
CVSS v2 Score 6.9
References
Products affected by CVE-2017-1000367


Contact Us

Shodan ® - All rights reserved