WN Server畸形GET请求缓冲区溢出漏洞

漏洞信息详情

WN Server畸形GET请求缓冲区溢出漏洞

漏洞简介

John Franks WN Server 1.18.2版本到2.0.0版本存在缓冲区溢出漏洞。远程攻击者可以借助超长GET请求执行任意代码。

漏洞公告

This issue has been reportedly addressed in WN Server 2.4.4. Those affected by this vulnerability are advised to upgrade.
WN Server WN Server 1.18.2

WN Server WN Server 1.18.3

WN Server WN Server 1.18.4

WN Server WN Server 1.18.5

WN Server WN Server 1.18.6

WN Server WN Server 1.18.7

WN Server WN Server 1.19 .0

WN Server WN Server 1.19.1

WN Server WN Server 1.19.2

WN Server WN Server 1.19.3

WN Server WN Server 1.19.4

WN Server WN Server 1.19.5

WN Server WN Server 1.19.6

WN Server WN Server 1.19.7

WN Server WN Server 1.19.8

WN Server WN Server 1.19.9

WN Server WN Server 2.0 .0

参考网址

来源: BID
名称: 5831
链接:http://www.securityfocus.com/bid/5831

来源: XF
名称: wn-server-get-bo(10223)
链接:http://www.iss.net/security_center/static/10223.php

来源: BUGTRAQ
名称: 20020930 iDEFENSE Security Advisory 09.30.2002: Buffer Overflow in WN Server
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=103340145725050&w=2

来源: VULNWATCH
名称: 20020930 iDEFENSE Security Advisory 09.30.2002: Buffer Overflow in WN Server
链接:http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0138.html

来源: OSVDB
名称: 9836
链接:http://www.osvdb.org/9836

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享