CVE-2011-5124
high · 10Stack-based buffer overflow in the BCAAA component before build 60258, as used by Blue Coat ProxySG 4.2.3 through 6.1 and ProxyOne, allows remote attackers to execute arbitrary code via a large packet to the synchronization port (16102/tcp).
10
CVSS
54.6%
EPSS (exploit prob.)
99th
EPSS percentile
2012-08-26
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| bluecoat | proxyone | all versions |
| bluecoat | proxysg | 4.2.6 |
| bluecoat | proxysg | 4.3.2.3 |
| bluecoat | proxysg | 5.1 |
| bluecoat | proxysg | 5.1.6.1 |
| bluecoat | proxysg | 5.2 |
| bluecoat | proxysg | 5.2.2.4 |
| bluecoat | proxysg | 5.2.5.2 |
| bluecoat | proxysg | 5.3 |
| bluecoat | proxysg | 5.3.2.1 |
| bluecoat | proxysg | 5.4 |
| bluecoat | proxysg | 5.4.1.1 |
| bluecoat | proxysg | 6 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2011-5124