CVE-2005-1394
HIGH 7.2EPSS 0.8%
Format string vulnerability in ArcGIS for ESRI ArcInfo Workstation 9.0 allows local users to gain privileges via format string specifiers in the ARCHOME environment variable to (1) wservice or (2) lockmgr.
- CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 0.83% chance of exploitation in the next 30 days, 55th percentile
- Published
- 2005-05-02
- Updated
- 2024-08-07