7.5
CVSSv2

CVE-2005-4270

Published: 15/12/2005 Updated: 19/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.

Vulnerable Product Search on Vulmon Subscribe to Product

watchfire appscan qa 5.0.134

watchfire appscan qa 5.0.609

Exploits

# Watchfire AppScan QA PoC - Coded by Mariano Nuñez Di Croce @ CYBSEC # # How to use: # 1 Run this script to setup the fake web server # 2 Scan the server with AppScan QA, either in Interactive or Manual mode # 3 If you get an "You are vulnerable!" popup, you should upgrade inmediatly # # PoC developed for Windows 2000 Server SP4 # #!/usr ...