Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2001-0735

EPSS 0.46% · P64
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2001-0735

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Buffer overflow in cfingerd 1.4.3 and earlier with the ALLOW_LINE_PARSING option enabled allows local users to execute arbitrary code via a long line in the .nofinger file.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
CFingerD 缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
CVE(CAN) ID: CAN-2001-0735 cfingerd 一个安全的finger守护程序。它由cfingerd开发小组维护。 它被发现存在一个缓冲区溢出漏洞。由于没有检查用户提供数据的长度,如果用户提供的 数据长度超过80字节,就可能使一个内部缓冲区发生溢出,攻击者可能改变程序执行流程, 并执行任意代码。 问题在util.c第181-182行附近: ... while((line[pos] != ' ') && (!done)) { command[newpos] = line[pos];
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2001-0735

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2001-0735

登录查看更多情报信息。

Same Patch Batch · n/a · 2001-10-12 · 45 CVEs total

CVE-2001-0780Directory Pro 泄露文件内容漏洞
CVE-2001-0783Cisco TFTPD Server 目录遍历漏洞
CVE-2001-0782KDE ktvision特权提升漏洞
CVE-2001-0785AMLServer 目录遍历漏洞
CVE-2001-0789Sendmail Kaspersky KAV格式字符串漏洞
CVE-2001-0790Specter IDS服务拒绝(CPU消耗)漏洞
CVE-2001-0791Windows NT的Trend Micro InterScan VirusWall更改配置漏洞
CVE-2001-0794A-FTP Anonymous FTP Server缓冲区溢出漏洞
CVE-2001-0795Perception LiteServe 脚本源代码泄漏
CVE-2001-0788AMLServer 泄漏物理路径
CVE-2001-0781SpoonFTP缓冲区溢出漏洞
CVE-2001-0778OmniHTTPd源代码获得漏洞
CVE-2001-0777Omnicron OmniHTTPD PHP 拒绝服务漏洞
CVE-2001-0776DynFX MailServer POP3d拒绝服务漏洞
CVE-2001-0775xloadimage 缓冲区溢出漏洞
CVE-2001-0772HP-UX Common Desktop Environment (CDE)模块缓冲区溢出漏洞
CVE-2001-0771Spytech SpyAnywhere未经授权管理员访问漏洞
CVE-2001-0768GuildFTPD 口令明文保存漏洞
CVE-2001-0767GuildFTPD 目录遍历漏洞
CVE-2001-0766MacOS X Client Apache文件保护绕过漏洞

Showing top 20 of 45 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2001-0735

No comments yet


Leave a comment