CVE-2005-4270

Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:watchfire:appscan_qa:5.0.134:*:*:*:*:*:*:*
cpe:2.3:a:watchfire:appscan_qa:5.0.609:*:*:*:*:*:*:*

History

21 Nov 2024, 00:03

Type Values Removed Values Added
References () http://secunia.com/advisories/18013 - () http://secunia.com/advisories/18013 -
References () http://securityreason.com/securityalert/260 - () http://securityreason.com/securityalert/260 -
References () http://securitytracker.com/id?1015362 - () http://securitytracker.com/id?1015362 -
References () http://www.cybsec.com/vuln/CYBSEC_Security_Advisory_AppScanQA_RemoteCodeExec.pdf - Exploit () http://www.cybsec.com/vuln/CYBSEC_Security_Advisory_AppScanQA_RemoteCodeExec.pdf - Exploit
References () http://www.securityfocus.com/archive/1/419586/100/0/threaded - () http://www.securityfocus.com/archive/1/419586/100/0/threaded -
References () http://www.securityfocus.com/bid/15873 - Exploit () http://www.securityfocus.com/bid/15873 - Exploit
References () http://www.vupen.com/english/advisories/2005/2933 - () http://www.vupen.com/english/advisories/2005/2933 -

Information

Published : 2005-12-15 20:11

Updated : 2024-11-21 00:03


NVD link : CVE-2005-4270

Mitre link : CVE-2005-4270

CVE.ORG link : CVE-2005-4270


JSON object : View

Products Affected

watchfire

  • appscan_qa