CVE-2000-1014: High severity SCO UnixWare vulnerability
Published Dec 11, 2000
·Updated
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.
Affected Software
1 affected component
SCO UnixWare=7.0
Remediation
Patch Available
Event History
Dec 11, 2000
CVE Published
05:00 AM
Jan 22, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1014?
CVE-2000-1014 has a high severity level due to its ability to allow remote command execution.
2
How do I fix CVE-2000-1014?
To fix CVE-2000-1014, you should apply the latest patches provided by Xinuos for UnixWare 7.
3
What software is affected by CVE-2000-1014?
CVE-2000-1014 affects the search97.cgi script in the SCO help http server for UnixWare 7.
4
Can CVE-2000-1014 be exploited remotely?
Yes, CVE-2000-1014 can be exploited by remote attackers through crafted requests.
5
What is the nature of CVE-2000-1014 vulnerability?
CVE-2000-1014 is a format string vulnerability that allows for arbitrary command execution.