Vulnerabilities
Vulnerable Software
Listar:  >> Listar  Security Vulnerabilities
Buffer overflows in Ecartis (formerly Listar) 1.0.0 before snapshot 20020125 allows remote attackers to execute arbitrary code via (1) address_match() of mystring.c or (2) other functions in tolist.c.
CVSS Score
10.0
EPSS Score
0.226
Published
2002-08-12
Buffer overflows in Ecartis (formerly Listar) 1.0.0 in snapshot 20020427 and earlier allow local users to gain privileges via (1) a long command line argument, which is not properly handled in core.c, or possibly via bad uses of sprintf() in (2) moderate.c, (3) lcgi.c, (4) fileapi.c, (5) cookie.c, (6) codes.c, or other files.
CVSS Score
4.6
EPSS Score
0.005
Published
2002-08-12
Ecartis (formerly Listar) 1.0.0 in snapshot 20020125 and earlier does not properly drop privileges when Ecartis is installed setuid-root, "lock-to-user" is not set, and ecartis is called by certain MTA's, which could allow local users to gain privileges.
CVSS Score
7.2
EPSS Score
0.0
Published
2002-08-12


Contact Us

Shodan ® - All rights reserved