← Back

CVE-2014-0039

nvd nist
Published: Feb 8, 2014Modified: Apr 29, 2026

JSON object

Loading...
4.4
Vector
AV:L/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 3.4 / Impact: 6.4
Source: NVD

Description

Untrusted search path vulnerability in fwsnort before 1.6.4, when not running as root, allows local users to execute arbitrary code via a Trojan horse fwsnort.conf in the current working directory.

Affected (25)

Products: Cipherdyne: Fwsnort
1 product
Fwsnort
Configuration A
25 vulnerable
Vulnerable SoftwareAffected Versions
Cipherdyne
Up to 1.6.4
Version 0.5
Version 0.6.1
Version 0.6.2
Version 0.6.3
Version 0.6.4
Version 0.6.5
Version 0.6
Version 0.7.0
Version 0.8.0
Version 0.8.1
Version 0.8.2
Version 0.9.0
Version 1.0.1
Version 1.0.2
Version 1.0.3
Version 1.0.4
Version 1.0.5
Version 1.0.6
Version 1.0
Version 1.5
Version 1.6.1
Version 1.6.2
Version 1.6.3
Version 1.6

References (14)

Timeline

No history available yet.