Lucene search

K
kasperskyKaspersky LabKLA10316
HistoryMay 02, 2005 - 12:00 a.m.

KLA10316 ACE vulnerability in Sacred

2005-05-0200:00:00
Kaspersky Lab
threats.kaspersky.com
14

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.1

Confidence

Low

EPSS

0.107

Percentile

95.1%

A buffer overflow was found in Sacred. By exploiting this vulnerability malicious users can execute arbitrary code. This vulnerability can be exploited remotely via unknown vectors.

Original advisories

Related products

Sacred

CVE list

CVE-2005-0906 critical

Solution

Update to latest version

Impacts

  • ACE

Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.

Affected Products

  • Sacred version 1.8.2.6

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.1

Confidence

Low

EPSS

0.107

Percentile

95.1%

Related for KLA10316