Lucene search

K
nvd[email protected]NVD:CVE-2008-4048
HistorySep 11, 2008 - 9:06 p.m.

CVE-2008-4048

2008-09-1121:06:47
CWE-119
web.nvd.nist.gov
3

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

8.1

Confidence

High

EPSS

0.133

Percentile

95.6%

Heap-based buffer overflow in a certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to execute arbitrary code via a long third argument to the CreateURLShortcut method.

Affected configurations

Nvd
Node
friendly_technologiesfriendly_pppoe_clientMatch3.0.0.57
VendorProductVersionCPE
friendly_technologiesfriendly_pppoe_client3.0.0.57cpe:2.3:a:friendly_technologies:friendly_pppoe_client:3.0.0.57:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

8.1

Confidence

High

EPSS

0.133

Percentile

95.6%

Related for NVD:CVE-2008-4048