vendor:
Orbit
by:
JavaGuru
7.5
CVSS
HIGH
Buffer Overflow
CWE
Product Name: Orbit
Affected Version From: 2.8.4 and earlier
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Unknown
Orbit <=2.8.4 Long Hostname Buffer Overflow Vulnerability Poc
This is a buffer overflow vulnerability in Orbit <=2.8.4 that allows an attacker to execute arbitrary code by sending a long hostname. The vulnerability was discovered by Secunia and the exploit and POC were provided by JavaGuru.
Mitigation:
There is no known mitigation for this vulnerability. It is recommended to update to a patched version of Orbit or use an alternative software.