VDB

CVE-2004-2687

CVE-2004-2687 PUBLISHED CVSS 9.300000190734863 CRITICAL

distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed by the server without authorization checks.

EPSS 88.20% · 99.8th percentile

Risk Scores

CVSS 2.0
9.300000190734863
EPSS Score
88.20%
99.8th percentile

Affected Products

VendorProductVersions
applexcode1.5
sambasamba0
n/an/an/a

Timeline

  • Dec 31, 2004 CVE Published
  • May 22, 2012 PoC Published
  • Jan 6, 2013 PoC Published
  • Oct 14, 2013 PoC Published
  • Jan 1, 2014 PoC Published
  • Jan 5, 2014 PoC Published
  • Jan 17, 2014 PoC Published
  • May 27, 2014 PoC Published
  • Aug 12, 2014 PoC Published
  • Jan 17, 2015 PoC Published
  • Jan 28, 2015 PoC Published
  • Feb 9, 2015 PoC Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›