Lucene search

K
cveMitreCVE-2011-2220
HistoryJul 14, 2011 - 11:55 p.m.

CVE-2011-2220

2011-07-1423:55:02
CWE-119
mitre
web.nvd.nist.gov
33
cve-2011-2220
buffer overflow
nfrengine.exe
novell file reporter engine
remote code execution

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.878

Percentile

98.7%

Stack-based buffer overflow in NFREngine.exe in Novell File Reporter Engine before 1.0.2.53, as used in Novell File Reporter and other products, allows remote attackers to execute arbitrary code via a crafted RECORD element.

Affected configurations

Nvd
Node
novellfile_reporter_engineRange1.0.2.0
AND
novellfile_reporter
VendorProductVersionCPE
novellfile_reporter_engine*cpe:2.3:a:novell:file_reporter_engine:*:*:*:*:*:*:*:*
novellfile_reporter*cpe:2.3:a:novell:file_reporter:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.878

Percentile

98.7%