7.5

CVE-2005-4270

Exploit
Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
WatchfireAppscan Qa Version5.0.134
WatchfireAppscan Qa Version5.0.609
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.49% 0.918
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/18013
http://securityreason.com/securityalert/260
http://securitytracker.com/id?1015362
http://www.cybsec.com/vuln/CYBSEC_Security_Advisory_AppScanQA_RemoteCodeExec.pdf
Exploit
http://www.securityfocus.com/archive/1/419586/100/0/threaded
http://www.securityfocus.com/bid/15873
Exploit
http://www.vupen.com/english/advisories/2005/2933