VulnerabilityModified
CVE-2000-0881
The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files.
LOW 2.1EPSS 0.87%
Does this matter?
Lower severity and a low EPSS score (0.87%). Track it; it rarely justifies an emergency change on its own.
Description
The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 0.87% probability · 57th percentile
- CISA KEV
- Not listed
- Affected
- plus technologies/lpplus
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.htmlVendor Advisory
- http://www.securityfocus.com/bid/1644Exploit, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5201
- http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.htmlVendor Advisory
- http://www.securityfocus.com/bid/1644Exploit, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5201
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.