10

CVE-2005-0441

Multiple stack-based buffer overflows in Sybase Adaptive Server Enterprise (ASE) 12.x before 12.5.3 ESD#1 allow remote authenticated users to execute arbitrary code via the (1) attrib_valid function, (2) covert function, (3) declare statement, or (4) a crafted query plan, or remote authenticated users with database owner or "sa" role privileges to execute arbitrary code via (5) a crafted install java statement.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SybaseAdaptive Server Enterprise Version11.03.3 Editionlinux
SybaseAdaptive Server Enterprise Version11.5 Editiondigital_unix
SybaseAdaptive Server Enterprise Version11.5 Editionhp
SybaseAdaptive Server Enterprise Version11.5 Editionsun
SybaseAdaptive Server Enterprise Version11.5 Editionwin
SybaseAdaptive Server Enterprise Version11.5.1 Editiondigital_unix
SybaseAdaptive Server Enterprise Version11.5.1 Editionhp
SybaseAdaptive Server Enterprise Version11.5.1 Editionsun
SybaseAdaptive Server Enterprise Version11.5.1 Editionwin
SybaseAdaptive Server Enterprise Version11.9.2 Editiondigital_unix
SybaseAdaptive Server Enterprise Version11.9.2 Editionhp
SybaseAdaptive Server Enterprise Version11.9.2 Editionsun
SybaseAdaptive Server Enterprise Version11.9.2 Editionwin
SybaseAdaptive Server Enterprise Version12.0 Editiondigital_unix
SybaseAdaptive Server Enterprise Version12.0 Editionhp
SybaseAdaptive Server Enterprise Version12.0 Editionsun
SybaseAdaptive Server Enterprise Version12.0 Editionwin
SybaseAdaptive Server Enterprise Version12.0.1 Editiondigital_unix
SybaseAdaptive Server Enterprise Version12.0.1 Editionhp
SybaseAdaptive Server Enterprise Version12.0.1 Editionsun
SybaseAdaptive Server Enterprise Version12.0.1 Editionwin
SybaseAdaptive Server Enterprise Version12.5 Editiondigital_unix
SybaseAdaptive Server Enterprise Version12.5 Editionhp
SybaseAdaptive Server Enterprise Version12.5 Editionlinux
SybaseAdaptive Server Enterprise Version12.5 Editionsgi
SybaseAdaptive Server Enterprise Version12.5 Editionsun
SybaseAdaptive Server Enterprise Version12.5 Editionwin
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 21.28% 0.951
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.