Lucene search

K
cveMitreCVE-2009-4480
HistoryDec 30, 2009 - 9:30 p.m.

CVE-2009-4480

2009-12-3021:30:00
CWE-119
mitre
web.nvd.nist.gov
24
cve-2009-4480
buffer overflow
remote code execution
azeotech daqfactory 5.77
web service
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.019

Percentile

88.7%

Buffer overflow in the web service in AzeoTech DAQFactory 5.77 might allow remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.16 through 8.11. NOTE: as of 20091229, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

Affected configurations

Nvd
Node
azeotechdaqfactoryMatch5.77
VendorProductVersionCPE
azeotechdaqfactory5.77cpe:2.3:a:azeotech:daqfactory:5.77:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.019

Percentile

88.7%

Related for CVE-2009-4480