Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2004-1899

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2004-1899
Last Modified 05 Sep 2008 04:42:39
Published 31 Dec 2004 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2004-1899

Summary

The administration interface in Monit 1.4 through 4.2 allows remote attackers to cause an off-by-one overflow via a POST that contains 1024 bytes.

Vulnerable Systems

Application

  • Tildeslash Monit 1.4

  • Tildeslash Monit 3.0

  • Tildeslash Monit 3.1

  • Tildeslash Monit 3.2

  • Tildeslash Monit 4.0

  • Tildeslash Monit 4.1

  • Tildeslash Monit 4.1.1

  • Tildeslash Monit 4.2

  • Tildeslash Monit 4.3 Beta 2


References

BID - 10051

BUGTRAQ - 20040405 Advisory: Multiple Vulnerabilities in Monit

XF - monit-post-offbyone-bo(15736)

SECUNIA - 11304

OSVDB - 4979


Last Updated: 27 May 2016 10:39:14