Описание
Stack-based buffer overflow in the IBM Access Support eGatherer ActiveX control before 3.20.0284.0 allows remote attackers to execute arbitrary code via a long filename parameter to the RunEgatherer method.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
- US Government Resource
- ExploitPatch
- PatchVendor Advisory
- PatchVendor Advisory
- US Government Resource
- ExploitPatch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:egatherer:2.0.16:*:*:*:*:*:*:*
cpe:2.3:a:ibm:egatherer:2.42.243:*:*:*:*:*:*:*
EPSS
Процентиль: 98%
0.46308
Средний
9.3 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Stack-based buffer overflow in the IBM Access Support eGatherer ActiveX control before 3.20.0284.0 allows remote attackers to execute arbitrary code via a long filename parameter to the RunEgatherer method.
EPSS
Процентиль: 98%
0.46308
Средний
9.3 Critical
CVSS2
Дефекты
NVD-CWE-Other