Multiple WebGate Products CVE-2015-2100 Multiple Remote Stack Based Buffer Overflow Vulnerabilities
BID:72843
Info
Multiple WebGate Products CVE-2015-2100 Multiple Remote Stack Based Buffer Overflow Vulnerabilities
| Bugtraq ID: | 72843 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2015-2100 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 02 2015 12:00AM |
| Updated: | Mar 02 2015 12:00AM |
| Credit: | rgod |
| Vulnerable: |
Webgate eDVR Manager 0 Webgate Control Center 0 |
| Not Vulnerable: | |
Discussion
Multiple WebGate Products CVE-2015-2100 Multiple Remote Stack Based Buffer Overflow Vulnerabilities
Multiple WebGate products are prone to multiple remote stack-based buffer-overflow vulnerabilities.
An attacker can exploit these issues to execute arbitrary code in the context of an application using the ActiveX control (typically Internet Explorer). Failed attacks will likely cause denial-of-service conditions.
Multiple WebGate products are prone to multiple remote stack-based buffer-overflow vulnerabilities.
An attacker can exploit these issues to execute arbitrary code in the context of an application using the ActiveX control (typically Internet Explorer). Failed attacks will likely cause denial-of-service conditions.
Exploit / POC
Multiple WebGate Products CVE-2015-2100 Multiple Remote Stack Based Buffer Overflow Vulnerabilities
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Multiple WebGate Products CVE-2015-2100 Multiple Remote Stack Based Buffer Overflow Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].