Lucene search

K
cve[email protected]CVE-2002-0332
HistoryJun 25, 2002 - 4:00 a.m.

CVE-2002-0332

2002-06-2504:00:00
web.nvd.nist.gov
17
cve-2002-0332
information security
buffer overflows
remote code execution
xtell

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.7 High

AI Score

Confidence

High

0.393 Low

EPSS

Percentile

97.3%

Buffer overflows in xtell (xtelld) 1.91.1 and earlier, and 2.x before 2.7, allows remote attackers to execute arbitrary code via (1) a long DNS hostname that is determined using reverse DNS lookups, (2) a long AUTH string, or (3) certain data in the xtell request.

Affected configurations

NVD
Node
xtellxtellMatch1.91.1
OR
xtellxtellMatch2.6.1

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.7 High

AI Score

Confidence

High

0.393 Low

EPSS

Percentile

97.3%

Related for CVE-2002-0332