Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-13273

Опубликовано: 27 авг. 2019
Источник: debian

Описание

In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited by sending a crafted GET request that triggers an sprintf of the srcdb parameter.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xymonfixed4.3.29-1package
xymonfixed4.3.28-5+deb10u1busterpackage
xymonfixed4.3.28-2+deb9u1stretchpackage

Примечания

  • https://lists.xymon.com/archive/2019-July/046570.html

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 6 лет назад

In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited by sending a crafted GET request that triggers an sprintf of the srcdb parameter.

CVSS3: 9.8
nvd
больше 6 лет назад

In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited by sending a crafted GET request that triggers an sprintf of the srcdb parameter.

CVSS3: 9.8
github
больше 3 лет назад

In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited by sending a crafted GET request that triggers an sprintf of the srcdb parameter.