Vulnerabilities > Ktsuss Project

DATE CVE VULNERABILITY TITLE RISK
2019-11-19 CVE-2011-2922 Improper Input Validation vulnerability in Ktsuss Project Ktsuss 1.3/1.4
ktsuss versions 1.4 and prior spawns the GTK interface to run as root.
local
low complexity
ktsuss-project CWE-20
7.8
2019-11-19 CVE-2011-2921 Improper Check for Dropped Privileges vulnerability in Ktsuss Project Ktsuss 1.3/1.4
ktsuss versions 1.4 and prior has the uid set to root and does not drop privileges prior to executing user specified commands, which can result in command execution with root privileges.
network
low complexity
ktsuss-project CWE-273
critical
9.8