vendor:
SecureTransport
by:
patrick
7,5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: SecureTransport
Affected Version From: 1.0.0.5
Affected Version To: 1.0.0.5
Patch Exists: NO
Related CWE: CVE-2008-1724
CPE: a:tumbleweed_communications:secure_transport
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2008
Tumbleweed FileTransfer vcst_eu.dll ActiveX Control Buffer Overflow
This module exploits a stack buffer overflow in the vcst_eu.dll FileTransfer Module (1.0.0.5) ActiveX control in the Tumbleweed SecureTransport suite. By sending an overly long string to the TransferFile() 'remotefile' function, an attacker may be able to execute arbitrary code.
Mitigation:
No known mitigation or remediation for this vulnerability