Lucene search

K
cveCertccCVE-2011-4536
HistoryDec 27, 2011 - 4:01 a.m.

CVE-2011-4536

2011-12-2704:01:39
CWE-119
certcc
web.nvd.nist.gov
101
cve-2011-4536
buffer overflow
wellintech kingview
historysvr.exe
nettransdll.dll
arbitrary code execution
remote attack

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.55

Percentile

97.7%

Heap-based buffer overflow in nettransdll.dll in HistorySvr.exe (aka HistoryServer.exe) in WellinTech KingView 6.53 and 65.30.2010.18018 allows remote attackers to execute arbitrary code via a crafted op-code 3 packet.

Affected configurations

Nvd
Node
wellintechkingviewMatch6.53
OR
wellintechkingviewMatch65.30.2010.18018
VendorProductVersionCPE
wellintechkingview6.53cpe:2.3:a:wellintech:kingview:6.53:*:*:*:*:*:*:*
wellintechkingview65.30.2010.18018cpe:2.3:a:wellintech:kingview:65.30.2010.18018:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.55

Percentile

97.7%