← Browse

CVE-2000-0947

Medium

Elevated severity or exploit probability.

CVSS base
10.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS — probability of exploitation (30 days)
2.5%
84.2th percentile
CISA KEV
Not listed
Weakness / dates
—
Published 2000-12-19 · modified 2026-09-23

CVSS breakdown

AV:N/AC:L/Au:N/C:C/I:C/A:C

Attack VectorNNetwork
Attack ComplexityLLow
AuthenticationNNone
ConfidentialityCComplete
IntegrityCComplete
AvailabilityCComplete

Timeline

Description

Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands via format characters in the CAUTH command.

Affected

gnu

References

Official: NVD · CVE.org