[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2003-0064Date: (C)2003-03-03   (M)2023-12-22


The dtterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.5
Exploit Score: 10.0
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
http://marc.info/?l=bugtraq&m=104612710031920&w=2
BID-6942
HPSBUX0401-309
terminal-emulator-window-title(11414)

CPE    84
cpe:/o:sgi:irix:6.5.17f
cpe:/o:sgi:irix:6.5.5m
cpe:/o:sgi:irix:6.5.13f
cpe:/o:sgi:irix:6.5.9m
...

© SecPod Technologies