{"api_version":"1","generated_at":"2026-07-23T05:39:25+00:00","cve":"CVE-2004-0157","urls":{"html":"https://cve.report/CVE-2004-0157","api":"https://cve.report/api/cve/CVE-2004-0157.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2004-0157","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2004-0157"},"summary":{"title":"CVE-2004-0157","description":"x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program.","state":"PUBLISHED","assigner":"mitre","published_at":"2004-06-01 04:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.6","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://secunia.com/advisories/11382","name":"http://secunia.com/advisories/11382","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Secunia - Advisories - xonix Privilege Escalation Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/10149","name":"http://www.securityfocus.com/bid/10149","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Xonix X11 Game Insecure Privilege Dropping Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.debian.org/security/2004/dsa-484","name":"http://www.debian.org/security/2004/dsa-484","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Debian -- Security Information -- DSA-484-1 xonix","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15873","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15873","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://shellcode.org/Advisories/XONIX.txt","name":"http://shellcode.org/Advisories/XONIX.txt","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"404 Not Found","mime":"text/x-c","httpstatus":"404","archivestatus":"200"},{"url":"http://www.osvdb.org/5358","name":"http://www.osvdb.org/5358","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://securitytracker.com/id?1009789","name":"http://securitytracker.com/id?1009789","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Xonix Game High Score Mail Function Lets Local Users Gain Elevated Privileges","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2004-0157","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2004-0157","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2004","cve_id":"157","vulnerable":"1","versionEndIncluding":"1.4","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"xonix","cpe5":"xonix","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T00:10:03.286Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"1009789","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1009789"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://shellcode.org/Advisories/XONIX.txt"},{"name":"10149","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/10149"},{"name":"DSA-484","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2004/dsa-484"},{"name":"xonix-privilege-dropping(15873)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15873"},{"name":"5358","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/5358"},{"name":"11382","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/11382"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2004-04-14T00:00:00.000Z","descriptions":[{"lang":"en","value":"x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"1009789","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1009789"},{"tags":["x_refsource_MISC"],"url":"http://shellcode.org/Advisories/XONIX.txt"},{"name":"10149","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/10149"},{"name":"DSA-484","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2004/dsa-484"},{"name":"xonix-privilege-dropping(15873)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15873"},{"name":"5358","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/5358"},{"name":"11382","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/11382"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2004-0157","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1009789","refsource":"SECTRACK","url":"http://securitytracker.com/id?1009789"},{"name":"http://shellcode.org/Advisories/XONIX.txt","refsource":"MISC","url":"http://shellcode.org/Advisories/XONIX.txt"},{"name":"10149","refsource":"BID","url":"http://www.securityfocus.com/bid/10149"},{"name":"DSA-484","refsource":"DEBIAN","url":"http://www.debian.org/security/2004/dsa-484"},{"name":"xonix-privilege-dropping(15873)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15873"},{"name":"5358","refsource":"OSVDB","url":"http://www.osvdb.org/5358"},{"name":"11382","refsource":"SECUNIA","url":"http://secunia.com/advisories/11382"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2004-0157","datePublished":"2004-04-17T04:00:00.000Z","dateReserved":"2004-02-13T00:00:00.000Z","dateUpdated":"2024-08-08T00:10:03.286Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2004-06-01 04:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xonix:xonix:*:*:*:*:*:*:*:*","versionEndIncluding":"1.4","matchCriteriaId":"B70B149F-9519-46D6-BC4F-5C2316A2D6B8"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2004","CveId":"157","Ordinal":"1","Title":"CVE-2004-0157","CVE":"CVE-2004-0157","Year":"2004"},"notes":[{"CveYear":"2004","CveId":"157","Ordinal":"1","NoteData":"x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program.","Type":"Description","Title":"CVE-2004-0157"},{"CveYear":"2004","CveId":"157","Ordinal":"2","NoteData":"2004-04-17","Type":"Other","Title":"Published"},{"CveYear":"2004","CveId":"157","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}