CVE-2001-1129

Progress database 9.1C - RCE

Title source: llm

Description

Format string vulnerabilities in (1) _probuild, (2) _dbutil, (3) _mprosrv, (4) _mprshut, (5) _proapsv, (6) _progres, (7) _proutil, (8) _rfutil and (9) prolib in Progress database 9.1C allows a local user to execute arbitrary code via format string specifiers in the file used by the PROMSGS environment variable.

Scores

EPSS 0.0002
EPSS Percentile 4.7%

Classification

Status draft

Affected Products (1)

progress/progress

Timeline

Published Nov 02, 2001
Tracked Since Feb 18, 2026