7.5

CVE-2006-2007

Heap-based buffer overflow in Winny 2.0 b7.1 and earlier allows remote attackers to execute arbitrary code via long strings to certain commands sent to the file transfer port.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
WinnyWinny Version2.0b5.7
WinnyWinny Version2.0b7.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.69% 0.906
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://jvn.jp/jp/JVN%2374294680/index.html
http://secunia.com/advisories/19795
Vendor Advisory
http://www.eeye.com/html/research/advisories/AD20060421.html
Vendor Advisory
http://www.kb.cert.org/vuls/id/167033
US Government Resource
http://www.osvdb.org/24883
http://www.securityfocus.com/bid/17666
http://www.vupen.com/english/advisories/2006/1486
https://exchange.xforce.ibmcloud.com/vulnerabilities/25986