Lucene search

K
cve[email protected]CVE-2012-0273
HistoryJun 20, 2014 - 2:55 p.m.

CVE-2012-0273

2014-06-2014:55:05
CWE-119
web.nvd.nist.gov
22
cve-2012-0273
minalic
buffer overflows
remote code execution
nvd
security vulnerability

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8 High

AI Score

Confidence

Low

0.103 Low

EPSS

Percentile

95.0%

Multiple stack-based buffer overflows in MinaliC 2.0.0 allow remote attackers to execute arbitrary code via a (1) session_id cookie in a request to the get_cookie_value function in response.c, (2) directory name in a request to the add_default_file function in response.c, or (3) file name in a request to the retrieve_physical_file_name_or_brows function in response.c.

Affected configurations

NVD
Node
hans_alshoffminalicMatch2.0.0

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8 High

AI Score

Confidence

Low

0.103 Low

EPSS

Percentile

95.0%

Related for CVE-2012-0273