CVE-2005-2297

Stack-based buffer overflow in TreeAction.do in Sybase EAServer 4.2.5 through 5.2 allows remote authenticated users to execute arbitrary code via a large javascript parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sybase:easerver:4.2.5:*:*:*:*:*:*:*
cpe:2.3:a:sybase:easerver:5.0:*:*:*:*:*:*:*
cpe:2.3:a:sybase:easerver:5.1:*:*:*:*:*:*:*
cpe:2.3:a:sybase:easerver:5.2:*:*:*:*:*:*:*

History

20 Nov 2024, 23:59

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=112146180532313&w=2 - () http://marc.info/?l=bugtraq&m=112146180532313&w=2 -
References () http://secunia.com/advisories/16108 - () http://secunia.com/advisories/16108 -
References () http://securitytracker.com/id?1014497 - () http://securitytracker.com/id?1014497 -
References () http://www.spidynamics.com/spilabs/advisories/sybaseEAserverOverflow.htm - Patch, Vendor Advisory () http://www.spidynamics.com/spilabs/advisories/sybaseEAserverOverflow.htm - Patch, Vendor Advisory
References () http://www.sybase.com/detail?id=1036742 - Patch, Vendor Advisory () http://www.sybase.com/detail?id=1036742 - Patch, Vendor Advisory

Information

Published : 2005-07-19 04:00

Updated : 2024-11-20 23:59


NVD link : CVE-2005-2297

Mitre link : CVE-2005-2297

CVE.ORG link : CVE-2005-2297


JSON object : View

Products Affected

sybase

  • easerver