Beveiligingsadvies

CVE-2023-4491

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-10-04 12:17:20
Laatst bijgewerkt 2024-09-05 18:11:41
Toegewezen door INCIBE
CVSS-score 9.8
Status PUBLISHED

Beschrijving

Buffer overflow vulnerability in Easy Address Book Web Server 1.6 version. The exploitation of this vulnerability could allow an attacker to send a very long username string to /searchbook.ghp, asking for the name via a POST request, resulting in arbitrary code execution on the remote machine.