peter bassill · operator
$ cve CVE-2002-1566 JSON

CVE-2002-1566 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 3.4% (pctl 88)

Patch early

A public exploit exists.

Description

netris 0.5, and possibly other versions before 0.52, when running with the -w (wait) option, allows remote attackers to cause a denial of service (crash) via a long string to port 9284.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS3.39% — more likely to be exploited than 88% of all CVEs
On CISA KEVno
Public exploityes
Published2003-08-27
Last modified2026-06-16

Affected (1)

VendorProduct
netrisnetris

Public exploits

SourceTitleDate
exploit-dbNetris 0.3/0.4/0.5 - Remote Memory Corruption2002-09-09

References

→ the Explorer  ·  watch your stack  ·  NVD