CVE-2003-0023: Medium severity rxvt rxvt vulnerability
Published Mar 3, 2003
·Updated
The menuBar feature in rxvt 2.7.8 allows attackers to modify menu options and execute arbitrary commands via a certain character escape sequence that inserts the commands into the menu.
Affected Software
8 affected components
rxvt rxvt=2.6.1
rxvt rxvt=2.6.2
rxvt rxvt=2.6.3
rxvt rxvt=2.6.4
rxvt rxvt=2.7.5
rxvt rxvt=2.7.6
rxvt rxvt=2.7.7
rxvt rxvt=2.7.8
Event History
Mar 3, 2003
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-0023?
CVE-2003-0023 is considered to have a high severity due to the ability for attackers to execute arbitrary commands.
2
How do I fix CVE-2003-0023?
To fix CVE-2003-0023, users should upgrade to a version of rxvt that is not vulnerable, such as 2.7.9 or higher.
3
What versions of rxvt are affected by CVE-2003-0023?
CVE-2003-0023 affects rxvt versions 2.6.1 through 2.7.8.
4
What is the impact of exploiting CVE-2003-0023?
Exploiting CVE-2003-0023 can allow an attacker to modify menu options and execute untrusted commands on the victim's system.
5
Is CVE-2003-0023 still a concern today?
While CVE-2003-0023 is an older vulnerability, systems running the affected versions of rxvt can still be a concern if not updated.