CVE-2003-0849
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 11%
from disclosure to weapon0 days
Published on NVDOct 9
1st PoCSep 25
exploitation probability
11%top 5% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain packets with modified length values, which is trusted by the ReceiveTransaction function when using a buffer provided by the BusyWithConnection function.
Affected products
n/a · n/apublic PoCs found — 3✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/23182exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/23183exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/105⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.