CVE-2009-0650
high · 10Stack-based buffer overflow in the GetStatsFromLine function in TPTEST 3.1.7 and earlier, and possibly 5.02, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a STATS line with a long pwd field. NOTE: some of these details are obtained from third party information.
10
CVSS
12.8%
EPSS (exploit prob.)
96th
EPSS percentile
2009-02-20
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| tptest | tptest | <= 3.1.7 |
| tptest | tptest | 5.0.2 |
Check a specific version with /api/v1/cve/match.
References
- http://secunia.com/advisories/33972
- http://www.securityfocus.com/bid/33785
- https://exchange.xforce.ibmcloud.com/vulnerabilities/48781
- https://www.exploit-db.com/exploits/8058
- http://secunia.com/advisories/33972
- http://www.securityfocus.com/bid/33785
- https://exchange.xforce.ibmcloud.com/vulnerabilities/48781
- https://www.exploit-db.com/exploits/8058
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2009-0650