Описание
Heap-based buffer overflow in the SoapServer service in Citrix Provisioning Services 5.0, 5.1, 5.6, 5.6 SP1, 6.0, and 6.1 allows remote attackers to execute arbitrary code via a crafted string associated with date and time data.
Ссылки
- Patch
- Patch
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:citrix:provisioning_services:5.0:*:*:*:*:*:*:*
cpe:2.3:a:citrix:provisioning_services:5.1:*:*:*:*:*:*:*
cpe:2.3:a:citrix:provisioning_services:5.6:*:*:*:*:*:*:*
cpe:2.3:a:citrix:provisioning_services:5.6:sp1:*:*:*:*:*:*
cpe:2.3:a:citrix:provisioning_services:6.0:*:*:*:*:*:*:*
cpe:2.3:a:citrix:provisioning_services:6.1:*:*:*:*:*:*:*
EPSS
Процентиль: 90%
0.05287
Низкий
7.5 High
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
больше 3 лет назад
Heap-based buffer overflow in the SoapServer service in Citrix Provisioning Services 5.0, 5.1, 5.6, 5.6 SP1, 6.0, and 6.1 allows remote attackers to execute arbitrary code via a crafted string associated with date and time data.
EPSS
Процентиль: 90%
0.05287
Низкий
7.5 High
CVSS2
Дефекты
CWE-119