7.5
CVSSv2

CVE-2002-1001

Published: 04/10/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflows in AnalogX Proxy prior to 4.12 allows remote malicious users to cause a denial of service and possibly execute arbitrary code via (1) a long HTTP request to TCP port 6588 or (2) a SOCKS 4A request to TCP port 1080 with a long DNS hostname.

Vulnerable Product Search on Vulmon Subscribe to Product

analogx proxy 4.0.2

analogx proxy 4.0.4

analogx proxy 4.0

analogx proxy 4.0.5

analogx proxy 4.0.6

analogx proxy 4.0.7

analogx proxy 4.0.1

analogx proxy 4.0.3

Exploits

source: wwwsecurityfocuscom/bid/5138/info AnalogX Proxy is prone to a buffer overflow condition when attempting to handle malformed SOCKS4A requests (via TCP port 1080) This may be exploited to create a denial of service condition or to potentially execute arbitrary instructions with the privileges of the AnalogX Proxy process #!/usr/ ...