Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.100413
Kategorie:Buffer overflow
Titel:BigAnt IM Server 'USV' Request Buffer Overflow Vulnerability - Active Check
Zusammenfassung:BigAnt IM Server is prone to a remote buffer overflow; vulnerability because it fails to perform adequate boundary checks on user-supplied input.
Beschreibung:Summary:
BigAnt IM Server is prone to a remote buffer overflow
vulnerability because it fails to perform adequate boundary checks on user-supplied input.

Vulnerability Impact:
An attacker can exploit this issue to execute arbitrary code
with the privileges of the user running the server. Failed exploit attempts will result in a
denial-of-service condition.

Affected Software/OS:
BigAnt IM Server version 2.52 is vulnerable. Other versions
may also be affected.

Solution:
No known solution was made available for at least one year
since the disclosure of this vulnerability. Likely none will be provided anymore. General
solution options are to upgrade to a newer release, disable respective features, remove the
product or replace the product by another one.

CVSS Score:
4.0

CVSS Vector:
AV:N/AC:L/Au:S/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2010-0308
1023520
http://www.securitytracker.com/id?1023520
37522
http://www.securityfocus.com/bid/37522
38451
http://secunia.com/advisories/38451
38455
http://secunia.com/advisories/38455
62044
http://osvdb.org/62044
ADV-2010-0260
http://www.vupen.com/english/advisories/2010/0260
http://events.ccc.de/congress/2009/Fahrplan/attachments/1483_26c3_ipv4_fuckups.pdf
http://www.squid-cache.org/Advisories/SQUID-2010_1.txt
http://www.squid-cache.org/Versions/v2/HEAD/changesets/12597.patch
http://www.squid-cache.org/Versions/v3/3.0/changesets/squid-3.0-9163.patch
http://www.squid-cache.org/Versions/v3/3.1/changesets/squid-3.1-9853.patch
oval:org.mitre.oval:def:11270
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11270
squid-dns-dos(56001)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56001
CopyrightCopyright (C) 2010 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.