Vulnerabilities
Vulnerable Software
Ucd-Snmp:  Security Vulnerabilities
Buffer overflow in snmpd in ucd-snmp 4.2.6 and earlier, when installed setuid root, allows local users to execute arbitrary code via a long -p command line argument. NOTE: it is not clear whether there are any standard configurations in which snmpd is installed setuid or setgid. If not, then this issue should not be included in CVE.
CVSS Score
7.2
EPSS Score
0.002
Published
2004-12-31
Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execute arbitrary code via multiple getnextrequest PDU messages with conflicting ifindex variables, which cause snmpnetstat to write variable data past the end of an array.
CVSS Score
7.5
EPSS Score
0.097
Published
2003-11-03
vacm ucd-snmp SNMP server, version 3.52, does not properly disable access to the public community string, which could allow remote attackers to obtain sensitive information.
CVSS Score
5.0
EPSS Score
0.008
Published
1999-04-06


Contact Us

Shodan ® - All rights reserved