Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-0138

Опубликовано: 21 янв. 2010
Источник: nvd
CVSS2: 10
EPSS Средний

Описание

Buffer overflow in Cisco CiscoWorks Internetwork Performance Monitor (IPM) 2.6 and earlier on Windows, as distributed in CiscoWorks LAN Management Solution (LMS), allows remote attackers to execute arbitrary code via a malformed getProcessName CORBA General Inter-ORB Protocol (GIOP) request, related to a "third-party component," aka Bug ID CSCsv62350.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:a:cisco:ciscoworks_internetwork_performance_monitor:*:*:*:*:*:*:*:*
Версия до 2.6 (включая)
cpe:2.3:a:cisco:ciscoworks_internetwork_performance_monitor:2.4:*:*:*:*:*:*:*
cpe:2.3:a:cisco:ciscoworks_internetwork_performance_monitor:2.5:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

EPSS

Процентиль: 93%
0.10861
Средний

10 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
почти 4 года назад

Buffer overflow in Cisco CiscoWorks Internetwork Performance Monitor (IPM) 2.6 and earlier on Windows, as distributed in CiscoWorks LAN Management Solution (LMS), allows remote attackers to execute arbitrary code via a malformed getProcessName CORBA General Inter-ORB Protocol (GIOP) request, related to a "third-party component," aka Bug ID CSCsv62350.

EPSS

Процентиль: 93%
0.10861
Средний

10 Critical

CVSS2

Дефекты

CWE-119