VDB
CVE-2001-0717
CVE-2001-0717
PUBLISHED
CVSS 10 CRITICAL
Format string vulnerability in ToolTalk database server rpc.ttdbserverd allows remote attackers to execute arbitrary commands via format string specifiers that are passed to the syslog function.
EPSS 14.55% · 94.6th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
14.55%
94.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| tooltalk | tooltalk_database_server | |
| n/a | n/a | n/a |
Timeline
- Oct 30, 2001 CVE Published
- Sep 23, 2010 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 3, 2022 CVE Updated
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
References
- 3382 vdb
- HPSBUX0110-168 vendor-advisory
- 00212 vendor-advisory
- 20011002 Multi-Vendor Format String Vulnerability in ToolTalk Service third-party-advisory
- CA-2001-27 third-party-advisory
- tooltalk-ttdbserverd-format-string(7069) vdb
- 1002479 vdb
- SSRT0767U vendor-advisory
- CSSA-2001-SCO.28 vendor-advisory
- M-002 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2001-0717 advisory