CVE-2011-2220
high · 10Stack-based buffer overflow in NFREngine.exe in Novell File Reporter Engine before 1.0.2.53, as used in Novell File Reporter and other products, allows remote attackers to execute arbitrary code via a crafted RECORD element.
10
CVSS
16.1%
EPSS (exploit prob.)
97th
EPSS percentile
2011-07-14
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| novell | file_reporter_engine | <= 1.0.2.0 |
| novell | file_reporter | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://download.novell.com/Download?buildid=leLxi7tQACs~
- http://secunia.com/advisories/45065
- http://securityreason.com/securityalert/8305
- http://securitytracker.com/id?1025722
- http://www.securityfocus.com/archive/1/518632/100/0/threaded
- http://www.zerodayinitiative.com/advisories/ZDI-11-227
- http://download.novell.com/Download?buildid=leLxi7tQACs~
- http://secunia.com/advisories/45065
- http://securityreason.com/securityalert/8305
- http://securitytracker.com/id?1025722
- http://www.securityfocus.com/archive/1/518632/100/0/threaded
- http://www.zerodayinitiative.com/advisories/ZDI-11-227
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2011-2220