Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code by causing a negative argument to be provided to the insstr function as used in a NASL script.
References
Configurations
History
No history.
Information
Published : 2003-06-16 04:00
Updated : 2024-02-28 10:24
NVD link : CVE-2003-0372
Mitre link : CVE-2003-0372
CVE.ORG link : CVE-2003-0372
JSON object : View
Products Affected
nessus
- nessus
CWE
CWE-189
Numeric Errors