vendor:
Advantage Data Architect Utility
by:
d0lc3
9,3
CVSS
HIGH
Heap Overflow
119
CWE
Product Name: Advantage Data Architect Utility
Affected Version From: 10.0
Affected Version To: 10.0
Patch Exists: Yes
Related CWE: N/A
CPE: a:sybase:advantage_data_architect_utility:10.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3 32 bits SPA
2010
Sybase Advantage Data Architect “*.SQL” Format Heap Oveflow RCE
Advantage Data Architect is prone to heap overflow when user opens crafted script file (.SQL) with long data inside. This issue causes a function pointer overwrite, allow us executing arbitrary code (UNICODE).
Mitigation:
Update to the latest version of Sybase Advantage Data Architect Utility.