cbcvebase.
CVE-2000-0947
published 2000-12-19

CVE-2000-0947: Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands via format characters in the CAUTH…

PriorityP432critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
2.53%
83.1th percentile
Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands via format characters in the CAUTH command.

Affected

3 ranges
VendorProductVersion rangeFixed in
gnucfengine
gnucfengine
gnucfengine
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.