Lucene search

K
nvd[email protected]NVD:CVE-2002-0449
HistoryJul 26, 2002 - 4:00 a.m.

CVE-2002-0449

2002-07-2604:00:00
web.nvd.nist.gov

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.071

Percentile

94.0%

Buffer overflow in webpsvc.exe for Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long argument to webplus.exe program, which triggers the overflow in webpsvc.exe.

Affected configurations

Nvd
Node
talentsoftweb\+_serverMatch4.6
OR
talentsoftweb\+_serverMatch5.0
VendorProductVersionCPE
talentsoftweb\+_server4.6cpe:2.3:a:talentsoft:web\+_server:4.6:*:*:*:*:*:*:*
talentsoftweb\+_server5.0cpe:2.3:a:talentsoft:web\+_server:5.0:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.071

Percentile

94.0%

Related for NVD:CVE-2002-0449