PT-2014-5500 · Cogent · Cogent Datahub
Pawel Wylecial
·
Publicado
2014-05-19
·
Atualizado
2014-06-27
·
CVE-2014-3788
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Cogent DataHub versions prior to 7.3.5
Description
The issue is related to a heap-based buffer overflow in the Web Server component. This can be exploited by remote attackers to execute arbitrary code. The exploitation is possible via a negative value in the
Content-Length field in a request.Recommendations
For versions prior to 7.3.5, update to version 7.3.5 or later to resolve the issue.
Correção
RCE
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cogent Datahub