CVE-2015-2099
high · 8.8Multiple buffer overflows in WebGate Control Center allow remote attackers to execute arbitrary code via unspecified vectors to the (1) GetRecFileInfo function in the FileConverter.FileConverterCtrl.1 control, (2) Login function in the LoginContoller.LoginControllerCtrl.1 control, or (3) GetThumbnail function in the WESPPlayback.WESPPlaybackCtrl.1 control.
8.8
CVSS
14.1%
EPSS (exploit prob.)
96th
EPSS percentile
2021-07-22
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses
CWE-120
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| webgateinc | control_center | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.zerodayinitiative.com/advisories/ZDI-15-055/
- http://www.zerodayinitiative.com/advisories/ZDI-15-056/
- http://www.zerodayinitiative.com/advisories/ZDI-15-063/
- http://www.zerodayinitiative.com/advisories/ZDI-15-055/
- http://www.zerodayinitiative.com/advisories/ZDI-15-056/
- http://www.zerodayinitiative.com/advisories/ZDI-15-063/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2015-2099