CVE-2007-2343

Stack-based buffer overflow in the TFTPD component in Enterasys NetSight Console 2.1 and NetSight Inventory Manager 2.1, and possibly earlier, allows remote attackers to execute arbitrary code via crafted request packets that contain long file names.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:enterasys:netsight_console:*:*:*:*:*:*:*:*
cpe:2.3:a:enterasys:netsight_inventory_manager:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:30

Type Values Removed Values Added
References () http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=506 - Vendor Advisory () http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=506 - Vendor Advisory
References () http://osvdb.org/34627 - () http://osvdb.org/34627 -
References () http://secunia.com/advisories/24764 - Exploit, Vendor Advisory () http://secunia.com/advisories/24764 - Exploit, Vendor Advisory
References () http://www.enterasys.com/pub/NetSight/Patches/SP1/NetSight_SP1.pdf - Patch () http://www.enterasys.com/pub/NetSight/Patches/SP1/NetSight_SP1.pdf - Patch
References () http://www.securitytracker.com/id?1017876 - () http://www.securitytracker.com/id?1017876 -
References () http://www.vupen.com/english/advisories/2007/1271 - () http://www.vupen.com/english/advisories/2007/1271 -

Information

Published : 2007-04-27 17:19

Updated : 2024-11-21 00:30


NVD link : CVE-2007-2343

Mitre link : CVE-2007-2343

CVE.ORG link : CVE-2007-2343


JSON object : View

Products Affected

enterasys

  • netsight_console
  • netsight_inventory_manager