PT-1999-1481 · Openlink · Openlink
Publicado
1999-10-15
·
Atualizado
2008-09-09
·
CVE-1999-0943
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
OpenLink version 3.2
Description
A buffer overflow issue exists, allowing remote attackers to gain privileges by sending a long GET request to the web configurator.
Recommendations
For OpenLink version 3.2, consider restricting access to the web configurator until a patch is available. As a temporary workaround, limit the length of GET requests to prevent exploitation.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Openlink