5
CVSSv2

CVE-2014-3976

Published: 05/06/2014 Updated: 02/09/2015
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in A10 Networks Advanced Core Operating System (ACOS) prior to 2.7.0-p6 and 2.7.1 prior to 2.7.1-P1_55 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a long session id in the URI to sys_reboot.html. NOTE: some of these details are obtained from third party information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

a10networks advanced core operating system 2.7.0

a10networks advanced core operating system 2.7.1

Exploits

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 === Details === Advisory: wwwquantumleapit/a10-networks-remote-buffer-overflow-softax/ Affected Product: ACOS Version: 270-P2(build: 53) (older versions may be affected too) (Tested on SoftAX[2]) === Executive Summary === Using a specially crafted HTTP request to the administration web ...