Lucene search

K
cveMitreCVE-2009-4660
HistoryMar 03, 2010 - 8:30 p.m.

CVE-2009-4660

2010-03-0320:30:00
CWE-119
mitre
web.nvd.nist.gov
24
cve-2009-4660
stack-based buffer overflow
bigant im server
antserver module
remote code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.3

Confidence

Low

EPSS

0.198

Percentile

96.4%

Stack-based buffer overflow in the AntServer Module (AntServer.exe) in BigAnt IM Server 2.50 allows remote attackers to execute arbitrary code via a long GET request to TCP port 6660.

Affected configurations

Nvd
Node
bigantsoftbigant_messengerMatch2.50
VendorProductVersionCPE
bigantsoftbigant_messenger2.50cpe:2.3:a:bigantsoft:bigant_messenger:2.50:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.3

Confidence

Low

EPSS

0.198

Percentile

96.4%