7.5
CVSSv2

CVE-2005-0439

Published: 02/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the decode_post function in ELOG prior to 2.5.7 allows remote malicious users to execute arbitrary code via attachments with long file names.

Vulnerable Product Search on Vulmon Subscribe to Product

stefan ritt elog web logbook 2.0.2

stefan ritt elog web logbook 2.0.3

stefan ritt elog web logbook 2.2.0

stefan ritt elog web logbook 2.2.1

stefan ritt elog web logbook 2.2.2

stefan ritt elog web logbook 2.0.0

stefan ritt elog web logbook 2.0.1

stefan ritt elog web logbook 2.1.2

stefan ritt elog web logbook 2.1.3

stefan ritt elog web logbook 2.5.6

stefan ritt elog web logbook 2.0.4

stefan ritt elog web logbook 2.0.5

stefan ritt elog web logbook 2.2.3

stefan ritt elog web logbook 2.2.4

stefan ritt elog web logbook 2.1.0

stefan ritt elog web logbook 2.1.1

stefan ritt elog web logbook 2.4

stefan ritt elog web logbook 2.5

Exploits

/* Worked on latest version for me * midaspsich/elog/download/tar/elog-latesttargz * elog-latesttargz 26-Jan-2005 21:36 519K * Default port 8080 * str0ke */ /* Hi there, someone has brought to u a gift ELOG Remote Shell Exploit <= 256 ( ...