Описание
Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows remote attackers to execute arbitrary code via the Error or Notice parameters.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:aol:aol_server:3.0:*:*:*:*:*:*:*
cpe:2.3:a:aol:aol_server:3.1:*:*:*:*:*:*:*
cpe:2.3:a:aol:aol_server:3.2:*:*:*:*:*:*:*
cpe:2.3:a:aol:aol_server:3.2.1:*:*:*:*:*:*:*
cpe:2.3:a:aol:aol_server:3.3:*:*:*:*:*:*:*
cpe:2.3:a:aol:aol_server:3.3.1:*:*:*:*:*:*:*
cpe:2.3:a:aol:aol_server:3.4:*:*:*:*:*:*:*
cpe:2.3:a:aol:aol_server:3.4.1:*:*:*:*:*:*:*
cpe:2.3:a:aol:aol_server:3.4.2:*:*:*:*:*:*:*
EPSS
Процентиль: 83%
0.01983
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows remote attackers to execute arbitrary code via the Error or Notice parameters.
EPSS
Процентиль: 83%
0.01983
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other