漏洞信息详情
WN Server畸形GET请求缓冲区溢出漏洞
- CNNVD编号:CNNVD-200210-262
- 危害等级: 高危
- CVE编号:
CVE-2002-1166
- 漏洞类型:
缓冲区溢出
- 发布时间:
2002-10-11
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
john_franks - 漏洞来源:
Discovery of this … -
漏洞简介
John Franks WN Server 1.18.2版本到2.0.0版本存在缓冲区溢出漏洞。远程攻击者可以借助超长GET请求执行任意代码。
漏洞公告
This issue has been reportedly addressed in WN Server 2.4.4. Those affected by this vulnerability are advised to upgrade.
WN Server WN Server 1.18.2
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.18.3
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.18.4
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.18.5
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.18.6
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.18.7
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19 .0
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.1
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.2
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.3
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.4
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.5
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.6
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.7
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.8
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 1.19.9
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
WN Server WN Server 2.0 .0
-
WN Server wn-2.4.4.tar.gz
http://hopf.math.nwu.edu/wn-2.4.4.tar.gz
参考网址
来源: BID
名称: 5831
链接:http://www.securityfocus.com/bid/5831
来源: XF
名称: wn-server-get-bo(10223)
链接:http://www.iss.net/security_center/static/10223.php
来源: BUGTRAQ
名称: 20020930 iDEFENSE Security Advisory 09.30.2002: Buffer Overflow in WN Server
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=103340145725050&w=2
来源: VULNWATCH
名称: 20020930 iDEFENSE Security Advisory 09.30.2002: Buffer Overflow in WN Server
链接:http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0138.html
来源: OSVDB
名称: 9836
链接:http://www.osvdb.org/9836