CVE-2006-1615 PUBLISHED CVSS 10 CRITICAL

Multiple format string vulnerabilities in the logging code in Clam AntiVirus (ClamAV) before 0.88.1 might allow remote attackers to execute arbitrary code. NOTE: as of 20060410, it is unclear whether this is a vulnerability, as there is some evidence that the arguments are actually being sanitized properly.

EPSS 36.76% · 97.1th percentile

Risk Scores

CVSS v2.0
10
EPSS Score
36.76%
97.1th percentile

Affected Products

VendorProductVersions
clamavclamav0.86, 0, 0.01
n/an/an/a

Timeline

References

…and 4 more

Open in Interactive Console →