10
CVSSv2

CVE-2015-8277

Published: 24/02/2016 Updated: 07/08/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple buffer overflows in (1) lmgrd and (2) Vendor Daemon in Flexera FlexNet Publisher prior to 11.13.1.2 Security Update 1 allow remote malicious users to execute arbitrary code via a crafted packet with opcode (a) 0x107 or (b) 0x10a.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

flexerasoftware flexnet publisher

Github Repositories

CVE-2015-8277 Exploit POC This is a proof of concept exploit for version 111212 of lmgrd(Flexera Licence Manager), that was bundled as part of Flexnet Publisher while deploying ArcGIS 1031 Please refer to wwwsecuriferacom/advisories/cve-2015-8277/ for more details