Vulnerabilities
Vulnerable Software
Ktsuss Project:  >> Ktsuss  >> 1.4  Security Vulnerabilities
ktsuss versions 1.4 and prior spawns the GTK interface to run as root. This can allow a local attacker to escalate privileges to root and use the "GTK_MODULES" environment variable to possibly execute arbitrary code.
CVSS Score
7.8
EPSS Score
0.001
Published
2019-11-19
ktsuss versions 1.4 and prior has the uid set to root and does not drop privileges prior to executing user specified commands, which can result in command execution with root privileges.
CVSS Score
9.8
EPSS Score
0.716
Published
2019-11-19


Contact Us

Shodan ® - All rights reserved