Back
CVE-2002-2091
Format string vulnerability in Deception Finger Daemon, decfingerd, 0.7 may allow remote attackers to execute arbitrary code via the username of a finger request.
Published: Dec 31, 2002
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| decfingerd | decfingerd | 0.7 |
GitHub Security Advisory GHSA-v39w-9x2v-5jgp
Format string vulnerability in Deception Finger Daemon, decfingerd, 0.7 may allow remote...
References (6)
- http://archives.neohapsis.com/archives/bugtraq/2002-06/0314.html
- http://www.iss.net/security_center/static/9434.php
- http://www.securityfocus.com/bid/5105
- http://archives.neohapsis.com/archives/bugtraq/2002-06/0314.html
- http://www.iss.net/security_center/static/9434.php
- http://www.securityfocus.com/bid/5105
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
3.52%
Top 12% most likely to be exploited
Threat Score
31.1 / 100
Data Sources
NVD
EPSS
GitHub