Lucene search

K
saintSAINT CorporationSAINT:9A6C2218A4210A8AD703985EB2921BF0
HistoryMar 16, 2017 - 12:00 a.m.

Disk Savvy Enterprise long URI in GET request buffer overflow

2017-03-1600:00:00
SAINT Corporation
my.saintcorporation.com
21

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.469

Percentile

97.5%

Added: 03/16/2017
CVE: CVE-2017-6187
BID: 96401

Background

Disk Savvy Enterprise is a disk space usage analyzer.

Problem

A buffer overflow in the built-in web server in Disk Savvy Enterprise could allow remote code execution when handling a long URI in a GET request.

Resolution

Contact the vendor for a patch or fixed version when available.

References

<https://www.exploit-db.com/exploits/41436/&gt;

Limitations

The Disk Savvy Enterprise web server is disabled by default.

Exploit works on Disk Savvy Enterprise 9.4.18 on Windows 7 Professional SP1 x64 and Windows 10 Professional x64.

Platforms

Windows 7
Windows 10

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.469

Percentile

97.5%

Related for SAINT:9A6C2218A4210A8AD703985EB2921BF0