Vulnerabilities
Vulnerable Software
Jeremy Elson:  >> Tcpflow  >> 0.11  Security Vulnerabilities
Format string vulnerability in tcpflow, when used in a setuid context, allows local users to execute arbitrary code via the device name argument, as demonstrated in Sustworks IPNetSentryX and IPNetMonitorX the setuid program RunTCPFlow.
CVSS Score
7.2
EPSS Score
0.001
Published
2003-08-27


Contact Us

Shodan ® - All rights reserved