Description
Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious NNTP servers to gain privileges via format string specifiers in NTTP responses.
Affected products
Exploits & proofs of concept
- exploit-dbISC INN 2.0/2.1/2.2.x - Multiple Local Format String Vulnerabilitiesby Paul Starzetz
Updated 16m ago · 8 sources