Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hq49-jp92-xfgx

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Local ZIM Server (zcs.exe) in Zilab Chat and Instant Messaging (ZIM) Server 2.1 and earlier allow remote attackers to execute arbitrary code via (1) heap-based buffer overflows involving multiple vectors including a long room name and a long source account, and (2) a stack-based buffer overflow with a long username in an information request. NOTE: some of these details are obtained from third party information.

The Local ZIM Server (zcs.exe) in Zilab Chat and Instant Messaging (ZIM) Server 2.1 and earlier allow remote attackers to execute arbitrary code via (1) heap-based buffer overflows involving multiple vectors including a long room name and a long source account, and (2) a stack-based buffer overflow with a long username in an information request. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 90%
0.0593
Низкий

Дефекты

CWE-119

Связанные уязвимости

nvd
около 17 лет назад

The Local ZIM Server (zcs.exe) in Zilab Chat and Instant Messaging (ZIM) Server 2.1 and earlier allow remote attackers to execute arbitrary code via (1) heap-based buffer overflows involving multiple vectors including a long room name and a long source account, and (2) a stack-based buffer overflow with a long username in an information request. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 90%
0.0593
Низкий

Дефекты

CWE-119