vendor:
SCO OpenServer
by:
K2
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: SCO OpenServer
Affected Version From: SCO OpenServer 5.0.5
Affected Version To: SCO OpenServer 5.0.5
Patch Exists: NO
Related CWE:
CPE: o:sco:openserver:5.0.5
Platforms Tested: SCO OpenServer 5.0.5
2000
SCO OpenServer mscreen
This exploit allows an attacker to execute arbitrary code with the privileges of the mscreen program on SCO OpenServer 5.0.5. By providing a specially crafted input, the attacker can overflow the buffer and overwrite the return address, redirecting the execution flow to their own malicious code.
Mitigation:
Apply the vendor's patch or upgrade to a patched version of SCO OpenServer.