Search/CVE-2002-0702
CVE

CVE-2002-0702

Format string vulnerabilities in the logging routines for dynamic DNS code (print.c) of ISC DHCP daemon (DHCPD) 3 to 3.0.1rc8, with the NSUPDATE option enabled, allow remote malicious DNS servers to execute arbitrary code via format strings in a DNS server response.

CVSS v3.1
EPSS
31.1%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
Connections
1 relationships
Timeline
disclosure → media coverage
Jul 26, 2002
Disclosure — published as a CVE record. · last revised by NVD Apr 16, 2026