CVE-2015-2094
high · 7.5Stack-based buffer overflow in the WESPPlayback.WESPPlaybackCtrl.1 control in WebGate WinRDS allows remote attackers to execute arbitrary code via unspecified vectors to the (1) PrintSiteImage, (2) PlaySiteAllChannel, (3) StopSiteAllChannel, or (4) SaveSiteImage function.
7.5
CVSS
14.0%
EPSS (exploit prob.)
96th
EPSS percentile
2015-03-09
Published
AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| webgateinc | winrds | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/131069/WebGate-WinRDS-2.0.8-StopSiteAllChannel-Stack-Overflow.html
- http://www.osvdb.org/118905
- http://www.osvdb.org/118906
- http://www.osvdb.org/118907
- http://www.osvdb.org/118908
- http://www.securityfocus.com/bid/72841
- http://www.zerodayinitiative.com/advisories/ZDI-15-071/
- http://www.zerodayinitiative.com/advisories/ZDI-15-072/
- http://www.zerodayinitiative.com/advisories/ZDI-15-073/
- http://www.zerodayinitiative.com/advisories/ZDI-15-074/
- https://www.exploit-db.com/exploits/36517/
- http://packetstormsecurity.com/files/131069/WebGate-WinRDS-2.0.8-StopSiteAllChannel-Stack-Overflow.html
- http://www.osvdb.org/118905
- http://www.osvdb.org/118906
- http://www.osvdb.org/118907
- http://www.osvdb.org/118908
- http://www.securityfocus.com/bid/72841
- http://www.zerodayinitiative.com/advisories/ZDI-15-071/
- http://www.zerodayinitiative.com/advisories/ZDI-15-072/
- http://www.zerodayinitiative.com/advisories/ZDI-15-073/
- http://www.zerodayinitiative.com/advisories/ZDI-15-074/
- https://www.exploit-db.com/exploits/36517/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2015-2094