PT-2001-1154 · 602Pro · 602Pro Lan Suite
Published
2001-01-09
·
Updated
2017-10-10
·
CVE-2000-1115
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
602Pro LAN SUITE versions prior to 2000.0.1.33
Description
The issue is related to a buffer overflow in the remote web administration component, specifically in the webprox.dll file. This allows remote attackers to potentially cause a denial of service and possibly execute arbitrary commands by sending a long GET request to the affected component.
Recommendations
For versions prior to 2000.0.1.33, update to version 2000.0.1.33 or later to resolve the issue. As a temporary workaround, consider restricting access to the web administration component to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
602Pro Lan Suite