Описание
Stack-based buffer overflow in the TFTPD component in Enterasys NetSight Console 2.1 and NetSight Inventory Manager 2.1, and possibly earlier, allows remote attackers to execute arbitrary code via crafted request packets that contain long file names.
Ссылки
- Vendor Advisory
- ExploitVendor Advisory
- Patch
- Vendor Advisory
- ExploitVendor Advisory
- Patch
Уязвимые конфигурации
Конфигурация 1Версия до 2.1 (включая)Версия до 2.1 (включая)
Одно из
cpe:2.3:a:enterasys:netsight_console:*:*:*:*:*:*:*:*
cpe:2.3:a:enterasys:netsight_inventory_manager:*:*:*:*:*:*:*:*
EPSS
Процентиль: 91%
0.06854
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Stack-based buffer overflow in the TFTPD component in Enterasys NetSight Console 2.1 and NetSight Inventory Manager 2.1, and possibly earlier, allows remote attackers to execute arbitrary code via crafted request packets that contain long file names.
EPSS
Процентиль: 91%
0.06854
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other