PT-2009-2692 · Foxit · Foxit Remote Access Server

Published

2009-09-14

·

Updated

2018-10-11

·

CVE-2008-7225

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Foxit Remote Access Server (aka WAC Server) version 2.0 Build 3503
Description The issue is a heap-based buffer overflow that can be triggered by remote attackers sending long SSH packets. This can cause a denial of service (crash) and potentially allow the execution of arbitrary code.
Recommendations For Foxit Remote Access Server (aka WAC Server) version 2.0 Build 3503, consider restricting access to SSH packets to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-7225

Affected Products

Foxit Remote Access Server