Vulnerabilities > CVE-2000-0993

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
freebsd
netbsd
openbsd
exploit available

Summary

Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd.

Exploit-Db

descriptionBSD chpass (pw_error(3)) Local Root Exploit. CVE-2000-0993. Local exploit for bsd platform
idEDB-ID:243
last seen2016-01-31
modified2001-01-12
published2001-01-12
reportercaddis
sourcehttps://www.exploit-db.com/download/243/
titleBSD chpass pw_error3 Local Root Exploit