CVE-2003-0171
HIGH 7.2EPSS 0.9%
DirectoryServices in MacOS X trusts the PATH environment variable to locate and execute the touch command, which allows local users to execute arbitrary commands by modifying the PATH to point to a directory containing a malicious touch program.
- CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 0.91% chance of exploitation in the next 30 days, 57th percentile
- Published
- 2003-04-15
- Updated
- 2024-08-08