7.5

CVE-2006-6201

Heap-based buffer overflow in Borland idsql32.dll 5.1.0.4, as used by RevilloC MailServer; 5.2.0.2 as used by Borland Developer Studio 2006; and possibly other versions allows remote attackers to execute arbitrary code via a long SQL statement, related to use of the DbiQExec function.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Borland SoftwareC Builder Version2006
Borland SoftwareDelphi Version5.x
Borland SoftwareDelphi Version6.x
Borland SoftwareDelphi Version7.x
Borland SoftwareDelphi Version2006
Borland SoftwareIdsql32.Dll Version5.1.0.2
Borland SoftwareIdsql32.Dll Version5.1.0.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.42% 0.898
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P