[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2014-2994Date: (C)2014-04-27   (M)2023-12-22


Stack-based buffer overflow in Acunetix Web Vulnerability Scanner (WVS) 8 build 20120704 allows remote attackers to execute arbitrary code via an HTML file containing an IMG element with a long URL (src attribute).

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
EXPLOIT-DB-32997
http://an7isec.blogspot.co.il/2014/04/pown-noobs-acunetix-0day.html
http://osandamalith.wordpress.com/2014/04/24/pwning-script-kiddies-acunetix-buffer-overflow/
http://packetstormsecurity.com/files/126306/Acunetix-8-Stack-Buffer-Overflow.html
http://packetstormsecurity.com/files/126307/Acunetix-8-Scanner-Buffer-Overflow.html
http://www.acunetix.com/blog/news/misleading-reports-0-day-acunetix-wvs/
https://www.youtube.com/watch?v=RHaMx8K1GeM

CWE    1
CWE-119

© SecPod Technologies