Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-10060

Опубликовано: 13 авг. 2025
Источник: nvd
CVSS3: 9.8
EPSS Средний

Описание

Sysax Multi Server versions prior to 5.55 contains a stack-based buffer overflow in its SSH service. When a remote attacker supplies an overly long username during authentication, the server copies the input to a fixed-size stack buffer without proper bounds checking. This allows remote code execution under the context of the service.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sysax:multi_server:*:*:*:*:*:*:*:*
Версия до 5.55 (исключая)

EPSS

Процентиль: 99%
0.6906
Средний

9.8 Critical

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 9.8
github
6 месяцев назад

Sysax Multi Server versions prior to 5.55 contains a stack-based buffer overflow in its SSH service. When a remote attacker supplies an overly long username during authentication, the server copies the input to a fixed-size stack buffer without proper bounds checking. This allows remote code execution under the context of the service.

EPSS

Процентиль: 99%
0.6906
Средний

9.8 Critical

CVSS3

Дефекты

CWE-121