Back

CVE-2000-1014

Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.

Published: Dec 11, 2000 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
sco unixware 7.0

GitHub Security Advisory GHSA-m5qj-69g5-cc43

Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 11.51%

Top 4% most likely to be exploited

Threat Score 33.5 / 100

Data Sources

NVD EPSS GitHub