vendor:
AccessDiver
by:
hyp3rlinx
7,8
CVSS
HIGH
Buffer Overflow
120 (Buffer Copy without Checking Size of Input)
CWE
Product Name: AccessDiver
Affected Version From: V4.301 build 5888
Affected Version To: V4.301 build 5888
Patch Exists: Yes
Related CWE: N/A
CPE: a:m_jean_fages:accessdiver:4.301
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2006
AccessDiver Buffer Overflow
AccessDiver is vulnerable to multiple buffer overflows, two vectors are described below. The first vector is a buffer overflow at 2073 bytes in the URL field for the Server/IP address. This will overwrite the NSEH and SEH exception handlers. The second vector is a buffer overflow when loading a malicious "Exploit zone file" text file containing 2080 bytes. This can be triggered by loading the text file from the "Weak History" menu, choosing "Import from File" and then selecting the exploit text file.
Mitigation:
Upgrade to the latest version of AccessDiver.