PT-2010-2818 · Omni · Omniweb

Published

2010-03-24

·

Updated

2018-10-10

·

CVE-2010-1102

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions OmniWeb (affected versions not specified)
Description The issue allows remote attackers to bypass intended port restrictions on outbound TCP connections due to an integer overflow. This can be achieved by using a port number outside the range of the unsigned short data type. For example, using a value of 65561 for TCP port 25 can demonstrate this bypass.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-1102

Affected Products

Omniweb