[Forgot Password]
Login  Register Subscribe

23631

 
 

126951

 
 

99536

 
 

909

 
 

80128

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2008-1809

Date: (C)2008-07-14   (M)2017-08-08 


Heap-based buffer overflow in Novell eDirectory 8.7.3 before 8.7.3.10b, and 8.8 before 8.8.2 FTF2, allows remote attackers to execute arbitrary code via an LDAP search request containing "NULL search parameters."

CVSS Score: 10.0Access Vector: NETWORK
Exploit Score: 10.0Access Complexity: LOW
Impact Score: 10.0Authentication: NONE
 Confidentiality: COMPLETE
 Integrity: COMPLETE
 Availability: COMPLETE





Reference:
SECTRACK-1020470
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=724
BID-30175
SECUNIA-31036
ADV-2008-2062
http://www.novell.com/support/viewContent.do?externalId=3843876
novell-edirectory-ldap-bo(43716)

CPE    2
cpe:/a:novell:edirectory:8.8
cpe:/a:novell:edirectory:8.7.3
CWE    1
CWE-119

© 2013 SecPod Technologies