Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-2687

EPSS 90.25% · P100
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-2687

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed by the server without authorization checks.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Apple Xcode Tools 配置错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
用于XCode 1.5版本及其他版本的distcc 2.x版本配置对于服务器端口的访问不限制时,远程攻击者可以借助编辑工作执行任意命令,该漏洞被无授权检查的服务器执行。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-2687

#POC DescriptionSource LinkShenlong Link
1Nonehttps://github.com/crypticdante/distccd_rce_CVE-2004-2687POC Details
2CVE-2004-2687 DistCC Daemon Command Executionhttps://github.com/k4miyo/CVE-2004-2687POC Details
3Remote Command Execution exploit for vulnerability CVE-2004-2687 in DistCC Daemon v1https://github.com/ss0wl/CVE-2004-2687_distcc_v1POC Details
4Nonehttps://github.com/H3xL00m/distccd_rce_CVE-2004-2687POC Details
5Nonehttps://github.com/n3ov4n1sh/distccd_rce_CVE-2004-2687POC Details
6Nonehttps://github.com/c0d3cr4f73r/distccd_rce_CVE-2004-2687POC Details
7Nonehttps://github.com/Sp3c73rSh4d0w/distccd_rce_CVE-2004-2687POC Details
8Nonehttps://github.com/0xwh1pl4sh/distccd_rce_CVE-2004-2687POC Details
9Nonehttps://github.com/N3rdyN3xus/distccd_rce_CVE-2004-2687POC Details
10Nonehttps://github.com/NyxByt3/distccd_rce_CVE-2004-2687POC Details
11Nonehttps://github.com/h3xcr4ck3r/distccd_rce_CVE-2004-2687POC Details
12Nonehttps://github.com/n3rdh4x0r/distccd_rce_CVE-2004-2687POC Details
13distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed by the server without authorization checks. https://github.com/projectdiscovery/nuclei-templates/blob/main/network/cves/2004/CVE-2004-2687.yamlPOC Details
14Nonehttps://github.com/h3x0v3rl0rd/distccd_rce_CVE-2004-2687POC Details
15Ushbu videoda Metasploitable 2 tizimidagi distccd servisidagi zaiflikdan foydalanib, Kali Linux orqali remote shell olish ko‘rsatib beriladi.https://github.com/nulltrace1336/Metasploitable-2-Distcc-Exploit-via-Kali-Linux-CVE-2004-2687POC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-2687

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-09-23 · 9 CVEs total

CVE-2001-1582Solaris libsldap缓冲区溢出漏洞
CVE-2001-1583Solaris lpd 操作系统命令注入漏洞
CVE-2002-2226TFTPD32远程缓冲区溢出漏洞
CVE-2003-1336mIRC IRC URL缓冲区溢出漏洞
CVE-2003-1337Abyss Web Server远程超长GET请求堆破坏漏洞
CVE-2003-1338Aprelium Technologies Abyss Web Server 跨站请求伪造漏洞
CVE-2003-1339@EZmeeting EZmeeting EZmeeting 缓冲区溢出漏洞
CVE-2004-2686Sun Solaris vfs_getvfssw函数本地权限提升漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2004-2687

No comments yet


Leave a comment