vendor:
RealWin
by:
Luigi Auriemma
7.5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: RealWin
Affected Version From: 2.1 (Build 6.1.10.10)
Affected Version To: 2.1 (Build 6.1.10.10)
Patch Exists: YES
Related CWE: N/A
CPE: a:datac_online:realwin
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2011
Remote Stack Overflow in DATAC RealWin
The part of the server listening on port 910 is vulnerable to a buffer overflow happening in the function 004be510 that splits the input strings using some delimiters passed by the callee functions and copies them in a stack buffer of 1024 bytes. One of the ways to exploit the vulnerability in that function is through an On_FC_CONNECT_FCS_LOGIN packet containing a long username.
Mitigation:
Upgrade to the latest version of DATAC RealWin