sup 相關的公開 CVE 漏洞與安全風險資訊,提供 CVSS、EPSS、公開時間與漏洞情報資料,協助評估潛在風險與修補優先順序。
| CVE | 摘要 | 來源 | 最高 CVSS | EPSS % | 公開時間 | 更新時間 |
|---|---|---|---|---|---|---|
| CVE-2004-0451 | Multiple format string vulnerabilities in the (1) logquit, (2) logerr, or (3) loginfo functions in Software Upgrade Protocol (SUP) allows remote attackers to execute arbitrary code via format string specifiers in messages that are logged by syslog. | [email protected] | 10.0 | 4.39% | 2004-12-06 | 2026-06-16 |
| CVE-2003-0606 | sup 1.8 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files. | [email protected] | 4.6 | 0.32% | 2003-08-27 | 2026-06-16 |