vendor:
rlpr
by:
7.5
CVSS
HIGH
Multiple Vulnerabilities
CWE
Product Name: rlpr
Affected Version From: 02.04
Affected Version To: 02.04
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
rlpr Multiple Vulnerabilities
The application rlpr is prone to multiple vulnerabilities that can allow a remote attacker to execute arbitrary code and gain unauthorized access. The vulnerabilities include a format string vulnerability and a buffer overflow vulnerability. The format string vulnerability occurs due to insufficient sanitization of user-supplied data through the 'msg()' function. The buffer overflow vulnerability occurs due to insufficient boundary checking in the 'msg()' function.
Mitigation:
Update to rlpr version 2.05 or later.