CVE-2017-1000203: OS Command Injection
Published Nov 17, 2017
·Updated
ROOT version 6.9.03 and below is vulnerable to an authenticated shell metacharacter injection in the rootd daemon resulting in remote code execution
Affected Software
1 affected component
cern Root<=6.9.03
Remediation
Event History
Nov 17, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-1000203?
CVE-2017-1000203 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2017-1000203?
To remediate CVE-2017-1000203, upgrade to a version of ROOT later than 6.9.03.
3
Who is affected by CVE-2017-1000203?
CVE-2017-1000203 affects users of ROOT version 6.9.03 and earlier.
4
What type of vulnerability is CVE-2017-1000203?
CVE-2017-1000203 is a shell metacharacter injection vulnerability that can lead to remote code execution.
5
Is CVE-2017-1000203 exploitable remotely?
Yes, CVE-2017-1000203 can be exploited remotely, allowing attackers to execute arbitrary code.