MG-SOFT Net Inspector Vulnerabilities
MG-SOFT Net Inspector is a powerful fault management application with alarming subsystem that complies with the international alarm reporting recommendations (ITU X.733). The software lets you effectively monitor the status of network devices and manage alarms associated with devices in the supervised TCP/IP network. It is affected by a format string vulnerability located in the function which logs the clients requests in the log file, a classical directory traversal vulnerability which allows an attacker to read any file on the server system, a buffer-overflow vulnerability which can be triggered by sending a long SNMP community string, and a Denial of Service vulnerability which can be triggered by sending a long string to the port 5227.