5.1
CVSSv2

CVE-2006-4654

Published: 09/09/2006 Updated: 17/10/2018
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Format string vulnerability in Easy Address Book Web Server 1.2 allows remote malicious users to cause a denial of service (crash) or "compromise the server" via encoded format string specifiers in the query string.

Vulnerable Product Search on Vulmon Subscribe to Product

efs software easy address book web server 1.2

Exploits

source: wwwsecurityfocuscom/bid/19842/info Easy Address Book Web Server is prone to a remote format-string vulnerability because the application fails to properly sanitize user-supplied data before including it in the format-specifier argument to a formatted-printing function This issue allows remote attackers to execute arbitrary machi ...