A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymous malicious user to execute code as SYSTEM by overflowing the sid parameter via a GET /settings&sid= attack.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
flexense dupscout 10.0.18 |