Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2000-0816 — Redhat Linux vulnerability

7 documents6 sources
Severity
2.1LOWNVD
EPSS
0.2%
top 55.62%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedOct 6
Latest updateApr 30

Description

Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.

CVSS vector

AV:L/AC:L/C:N/I:P/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages1 packages

â–¶NVDredhat/linux6.2, 7.0+1

🔴Vulnerability Details

2
GHSA
GHSA-pv6p-xwqp-cf4x: Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters↗2022-04-30
â–¶
CVEList
CVE-2000-0816: Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters↗2001-05-07
â–¶

💥Exploits & PoCs

2
Exploit-DB
Microsoft Windows Outlook Express and Windows Mail - Integer Overflow↗2010-05-11
â–¶
Exploit-DB
RedHat 6.2/7.0 Tmpwatch - Arbitrary Command Execution↗2000-10-06
â–¶

📋Vendor Advisories

1
Red Hat
security flaw↗2000-10-06
â–¶

💬Community

1
Bugzilla
CVE-2000-0816 security flaw↗2018-08-16
â–¶
CVE-2000-0816 — Redhat Linux vulnerability | cvebase