PT-2011-2283 · Alcatel Lucent · Alcatel-Lucent Omnipcx Enterprise

Published

2011-03-08

·

Updated

2017-08-17

·

CVE-2011-0344

CVSS v2.0

5.8

Medium

VectorAV:A/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Alcatel-Lucent OmniPCX Enterprise versions prior to R9.0 H1.301.50
Description The issue is related to multiple stack-based buffer overflows in unspecified CGI programs within the Unified Maintenance Tool web interface of the embedded web server in the Communication Server. This allows remote attackers to execute arbitrary code via crafted HTTP headers.
Recommendations For versions prior to R9.0 H1.301.50, update to R9.0 H1.301.50 or later to resolve the issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-0344

Affected Products

Alcatel-Lucent Omnipcx Enterprise