CVE-2011-0517
high · 9.3Stack-based buffer overflow in Sielco Sistemi Winlog Pro 2.07.00 and earlier, when Run TCP/IP server is enabled, allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted 0x02 opcode to TCP port 46823.
9.3
CVSS
40.5%
EPSS (exploit prob.)
99th
EPSS percentile
2011-01-20
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| sielcosistemi | winlog_pro | <= 2.07.00 |
Check a specific version with /api/v1/cve/match.
References
- http://aluigi.org/adv/winlog_1-adv.txt
- http://osvdb.org/70418
- http://secunia.com/advisories/42894
- http://securityreason.com/securityalert/8280
- http://www.exploit-db.com/exploits/15992
- http://www.kb.cert.org/vuls/id/496040
- http://www.securityfocus.com/bid/45813
- http://www.us-cert.gov/control_systems/pdf/ICSA-11-017-02.pdf
- http://www.vupen.com/english/advisories/2011/0126
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64716
- http://aluigi.org/adv/winlog_1-adv.txt
- http://osvdb.org/70418
- http://secunia.com/advisories/42894
- http://securityreason.com/securityalert/8280
- http://www.exploit-db.com/exploits/15992
- http://www.kb.cert.org/vuls/id/496040
- http://www.securityfocus.com/bid/45813
- http://www.us-cert.gov/control_systems/pdf/ICSA-11-017-02.pdf
- http://www.vupen.com/english/advisories/2011/0126
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64716
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2011-0517