vendor:
BlueGate
by:
Exploit Database
9.8
CVSS
HIGH
Remote Code Execution
119
CWE
Product Name: BlueGate
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: N/A
2020
BlueGate Remote Code Execution Vulnerability
A vulnerability in BlueGate allows a remote attacker to execute arbitrary code on the target system. The vulnerability exists due to a lack of proper validation of user-supplied input when handling UDP packets. An attacker can send a specially crafted packet to the target system, which will cause a buffer overflow and allow the attacker to execute arbitrary code on the target system.
Mitigation:
Upgrade to the latest version of BlueGate.