Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2004-1208

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2004-1208
Last Modified 05 Sep 2008 04:40:42
Published 10 Jan 2005 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2004-1208

Summary

Buffer overflow in Orbz 2.10 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long password field in a join request.

Vulnerable Systems

Application

  • 21-6 Productions Orbz 2.10

  • 21-6 Productions Orbz 2.5

  • 21-6 Productions Orbz 2.6

  • 21-6 Productions Orbz 2.7

  • 21-6 Productions Orbz 2.8

  • 21-6 Productions Orbz 2.9


References

XF - orbz-join-password-bo(18298)

BID - 11774

BUGTRAQ - 20041129 Buffer-overflow in Orbz 2.10


Last Updated: 27 May 2016 10:38:56