PT-2007-6335 · Netsupport · Netsupport Manager+1

Published

2007-10-06

·

Updated

2018-10-15

·

CVE-2007-5252

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: NetSupport Manager (NSM) Client versions 10.00 through 10.20 NetSupport School Student (NSS) version 9.00
Description: A buffer overflow issue allows remote NSM servers to cause a denial of service or possibly execute arbitrary code via crafted data in the configuration exchange phase of an initial connection setup.
Recommendations: For NetSupport Manager (NSM) Client versions 10.00 through 10.20, consider disabling the configuration exchange phase until a patch is available. For NetSupport School Student (NSS) version 9.00, restrict access to the initial connection setup to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-5252

Affected Products

Netsupport Manager
Netsupport School Student