PragmaSys TelnetServer 2000 rexec Buffer Overflow Vulnerability
BID:1605
Info
PragmaSys TelnetServer 2000 rexec Buffer Overflow Vulnerability
| Bugtraq ID: | 1605 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 24 2000 12:00AM |
| Updated: | Aug 24 2000 12:00AM |
| Credit: | First made public in U.S.S.R advisory USSR-2000051 published on August 24, 2000. |
| Vulnerable: |
Pragma Systems TelnetServer 2000 |
| Not Vulnerable: | |
Discussion
PragmaSys TelnetServer 2000 rexec Buffer Overflow Vulnerability
Pragma Systems offers a windows remote access server called TelnetServer 2000. TelnetServer crashes if more than 1000 NULL characters are sent to its rexec port, 512. This can be executed by an anonymous attacker from anywhere on the internet. It is not known whether this apparent overflow can be exploited to gain access on the victim host.
Pragma Systems offers a windows remote access server called TelnetServer 2000. TelnetServer crashes if more than 1000 NULL characters are sent to its rexec port, 512. This can be executed by an anonymous attacker from anywhere on the internet. It is not known whether this apparent overflow can be exploited to gain access on the victim host.
Exploit / POC
PragmaSys TelnetServer 2000 rexec Buffer Overflow Vulnerability
x
x