Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2002-1614

4 documents4 sources
Severity
7.2HIGH
EPSS
1.0%
top 23.08%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedSep 9
Latest updateApr 30

Description

Buffer overflow in HP Tru64 UNIX allows local users to execute arbitrary code via a long argument to /usr/bin/at.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages2 packages

NVDhp/tru645 versions+4
NVDhp/hp-ux5 versions+4

🔴Vulnerability Details

2
GHSA
GHSA-5887-hhqx-pjgh: Buffer overflow in HP Tru64 UNIX allows local users to execute arbitrary code via a long argument to /usr/bin/at2022-04-30
CVEList
CVE-2002-1614: Buffer overflow in HP Tru64 UNIX allows local users to execute arbitrary code via a long argument to /usr/bin/at2005-03-25

💥Exploits & PoCs

1
Exploit-DB
Tru64 UNIX 4.0g - '/usr/bin/at' Local Privilege Escalation2001-03-02
CVE-2002-1614 (HIGH CVSS 7.2) | Buffer overflow in HP Tru64 UNIX al | cvebase.io