CVE-2000-1014
SCO Unixware 7 - Remote Code Execution via search97.cgi queryText Format String
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2000-1014. PoCs published by Juliano Rizzo.
AI-analyzed exploit summary The writeup describes a format string vulnerability in SCO Unixware 7's scohelp HTTP server. The vulnerability in the vtopic CGI script allows remote attackers to execute arbitrary code via a crafted queryText parameter.
Description
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.
Exploits (1)
The writeup describes a format string vulnerability in SCO Unixware 7's scohelp HTTP server. The vulnerability in the vtopic CGI script allows remote attackers to execute arbitrary code via a crafted queryText parameter.