CVE-2014-9451

Publication date

2015-01-02 20:00:00

Family

mitre

State

PUBLISHED

Description

Multiple stack-based buffer overflows in the DIVA web service API (/webservice) in VDG Security SENSE (formerly DIVA) 2.3.13 allow remote attackers to execute arbitrary code via the (1) user or (2) password parameter in an AuthenticateUser request.