CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.2. See the original NVD description below for full technical details.
CVE
CVE-2003-0671
Severity
HIGH
CVSS
7.2
EPSS
0.55%
Original NVD Description
Format string vulnerability in tcpflow, when used in a setuid context, allows local users to execute arbitrary code via the device name argument, as demonstrated in Sustworks IPNetSentryX and IPNetMonitorX the setuid program RunTCPFlow.