← All CVEs

CVE-2000-0733

high · 10

Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request.

10
CVSS
12.4%
EPSS (exploit prob.)
96th
EPSS percentile
2000-10-20
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
sgiirix5.2
sgiirix5.3
sgiirix5.3
sgiirix6.0
sgiirix6.0.1
sgiirix6.0.1
sgiirix6.1
sgiirix6.2
sgiirix6.3
sgiirix6.4
sgiirix6.5
sgiirix6.5.1
sgiirix6.5.2m
sgiirix6.5.3
sgiirix6.5.3f
sgiirix6.5.3m
sgiirix6.5.4
sgiirix6.5.6
sgiirix6.5.7
sgiirix6.5.8

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2000-0733