Описание
Buffer overflows in AnalogX Proxy before 4.12 allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long HTTP request to TCP port 6588 or (2) a SOCKS 4A request to TCP port 1080 with a long DNS hostname.
Ссылки
- Vendor Advisory
- Vendor Advisory
- ExploitPatchVendor Advisory
- ExploitPatchVendor Advisory
- Vendor Advisory
- Vendor Advisory
- ExploitPatchVendor Advisory
- ExploitPatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:analogx:proxy:4.0:*:*:*:*:*:*:*
cpe:2.3:a:analogx:proxy:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:analogx:proxy:4.0.2:*:*:*:*:*:*:*
cpe:2.3:a:analogx:proxy:4.0.3:*:*:*:*:*:*:*
cpe:2.3:a:analogx:proxy:4.0.4:*:*:*:*:*:*:*
cpe:2.3:a:analogx:proxy:4.0.5:*:*:*:*:*:*:*
cpe:2.3:a:analogx:proxy:4.0.6:*:*:*:*:*:*:*
cpe:2.3:a:analogx:proxy:4.0.7:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.26091
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Buffer overflows in AnalogX Proxy before 4.12 allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long HTTP request to TCP port 6588 or (2) a SOCKS 4A request to TCP port 1080 with a long DNS hostname.
EPSS
Процентиль: 96%
0.26091
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other