Back

CVE-2002-1789

Format string vulnerability in newsx NNTP client before 1.4.8 allows local users to execute arbitrary code via format string specifiers that are not properly handled in a call to the syslog function.

Published: Dec 31, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
newsx newsx 1.4_pl6

GitHub Security Advisory GHSA-697f-q7rj-4v4v

Format string vulnerability in newsx NNTP client before 1.4.8 allows local users to execute...

Risk Scores

CVSS Score 7.2 / 10
EPSS Score 0.42%

Top 65% most likely to be exploited

Threat Score 28.9 / 100

Data Sources

NVD EPSS GitHub