Sysax Multi Server 'scriptpathbrowse2.htm' Buffer Overflow Vulnerability
BID:54094
Info
Sysax Multi Server 'scriptpathbrowse2.htm' Buffer Overflow Vulnerability
| Bugtraq ID: | 54094 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 19 2012 12:00AM |
| Updated: | Jun 19 2012 12:00AM |
| Credit: | Craig Freyman |
| Vulnerable: |
Codeorigin Sysax Multi Server 5.62 Codeorigin Sysax Multi Server 5.60 Codeorigin Sysax Multi Server 5.57 Codeorigin Sysax Multi Server 5.55 Codeorigin Sysax Multi Server 5.53 Codeorigin Sysax Multi Server 5.52 Codeorigin Sysax Multi Server 5.50 Codeorigin Sysax Multi Server 5.25 |
| Not Vulnerable: | |
Discussion
Sysax Multi Server 'scriptpathbrowse2.htm' Buffer Overflow Vulnerability
Sysax Multi Server is prone to a buffer-overflow vulnerability.
An attacker can exploit this issue to execute arbitrary code with the privileges of the user running the application. Failed exploit attempts will result in a denial-of-service condition.
Sysax Multi Server versions 5.62 and prior are vulnerable.
Sysax Multi Server is prone to a buffer-overflow vulnerability.
An attacker can exploit this issue to execute arbitrary code with the privileges of the user running the application. Failed exploit attempts will result in a denial-of-service condition.
Sysax Multi Server versions 5.62 and prior are vulnerable.
Exploit / POC
Sysax Multi Server 'scriptpathbrowse2.htm' Buffer Overflow Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
Sysax Multi Server 'scriptpathbrowse2.htm' Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
References
Sysax Multi Server 'scriptpathbrowse2.htm' Buffer Overflow Vulnerability
References:
References:
- Sysax Admin Interface Local Priv Exploit (pwnag3)
- Sysax Multi Server Homepage (Codeorigin)