Lucene search

K
cveMitreCVE-2004-0356
HistoryNov 23, 2004 - 5:00 a.m.

CVE-2004-0356

2004-11-2305:00:00
mitre
web.nvd.nist.gov
32
cve-2004-0356
stack-based buffer overflow
supervisor report center
sl mail pro
remote code execution
http protocol
security vulnerability

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.5

Confidence

Low

EPSS

0.045

Percentile

92.6%

Stack-based buffer overflow in Supervisor Report Center in SL Mail Pro 2.0.9 and earlier allows remote attackers to execute arbitrary code via an HTTP request with a long HTTP sub-version.

Affected configurations

Nvd
Node
seattle_lab_softwareslmail_proMatch2.0
OR
seattle_lab_softwareslmail_proMatch2.0.1
OR
seattle_lab_softwareslmail_proMatch2.0.2
OR
seattle_lab_softwareslmail_proMatch2.0.3
OR
seattle_lab_softwareslmail_proMatch2.0.4
OR
seattle_lab_softwareslmail_proMatch2.0.5
OR
seattle_lab_softwareslmail_proMatch2.0.6
OR
seattle_lab_softwareslmail_proMatch2.0.7
OR
seattle_lab_softwareslmail_proMatch2.0.8
OR
seattle_lab_softwareslmail_proMatch2.0.9
VendorProductVersionCPE
seattle_lab_softwareslmail_pro2.0cpe:2.3:a:seattle_lab_software:slmail_pro:2.0:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.1cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.1:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.2cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.2:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.3cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.3:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.4cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.4:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.5cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.5:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.6cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.6:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.7cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.7:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.8cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.8:*:*:*:*:*:*:*
seattle_lab_softwareslmail_pro2.0.9cpe:2.3:a:seattle_lab_software:slmail_pro:2.0.9:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.5

Confidence

Low

EPSS

0.045

Percentile

92.6%

Related for CVE-2004-0356