Lucene search

K
cveMitreCVE-2008-4048
HistorySep 11, 2008 - 9:06 p.m.

CVE-2008-4048

2008-09-1121:06:47
CWE-119
mitre
web.nvd.nist.gov
22
cve-2008-4048
friendly technologies
friendlypppoe client
buffer overflow
activex
remote code execution

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

8.1

Confidence

High

EPSS

0.133

Percentile

95.6%

Heap-based buffer overflow in a certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to execute arbitrary code via a long third argument to the CreateURLShortcut method.

Affected configurations

Nvd
Node
friendly_technologiesfriendly_pppoe_clientMatch3.0.0.57
VendorProductVersionCPE
friendly_technologiesfriendly_pppoe_client3.0.0.57cpe:2.3:a:friendly_technologies:friendly_pppoe_client:3.0.0.57:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

8.1

Confidence

High

EPSS

0.133

Percentile

95.6%

Related for CVE-2008-4048