7.5
CVSSv3

CVE-2003-0625

Published: 27/08/2003 Updated: 15/02/2024
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

Off-by-one error in certain versions of xfstt allows remote malicious users to read potentially sensitive memory via a malformed client request in the connection handshake, which leaks the memory in the server's response.

Vulnerable Product Search on Vulmon Subscribe to Product

hadrons xfstt

Exploits

source: wwwsecurityfocuscom/bid/8255/info xfstt is reported to be prone to an unspecified memory disclosure vulnerability This issue can be triggered by remote attackers to cause a denial of service The server may also return details about the memory layout of the underlying system when this issue is triggered # telnet localhost 7101 ...