Buffer overflows in the finger and whois demonstration scripts in Sambar Server 4.3 allow remote malicious users to execute arbitrary commands via a long hostname.
sambar sambar server