SQLData Enterprise Server Buffer Overflow Vulnerability
BID:3778
Info
SQLData Enterprise Server Buffer Overflow Vulnerability
| Bugtraq ID: | 3778 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 03 2002 12:00AM |
| Updated: | Jan 03 2002 12:00AM |
| Credit: | Discovered by Mr. Giggles <[email protected]>. |
| Vulnerable: |
SQLData Enterprise Server 3.0 |
| Not Vulnerable: | |
Discussion
SQLData Enterprise Server Buffer Overflow Vulnerability
SQLData Enterprise Server is a web based application which allows for the remote database administration.
If a malicious user submits a specially crafted request containing an unusually long string of characters, a stack overflow will reportedly occur making arbitrary code execution possible with SYSTEM privileges. Sending random data could cause the application to crash.
SQLData Enterprise Server is a web based application which allows for the remote database administration.
If a malicious user submits a specially crafted request containing an unusually long string of characters, a stack overflow will reportedly occur making arbitrary code execution possible with SYSTEM privileges. Sending random data could cause the application to crash.
Exploit / POC
SQLData Enterprise Server Buffer Overflow Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
SQLData Enterprise Server Buffer Overflow Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
SQLData Enterprise Server Buffer Overflow Vulnerability
References:
References:
- SQLData Enterprise Server Homepage (SQLData Systems)