vendor:
search.cgi
by:
inv
7.5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: search.cgi
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002
mnoGoSearch ‘search.cgi’ Buffer Overflow Vulnerability
mnoGoSearch 'search.cgi' has been reported prone to a buffer overflow vulnerability. The issue is a result of a lack of sufficient bounds checking performed on user-supplied URI parameters that are passed to the 'search.cgi' application. It may be possible for an attacker to exploit this vulnerability and have arbitrary code executed in the context of the web-server process.
Mitigation:
Perform proper bounds checking on user-supplied parameters.