A buffer overflow vulnerability lies in the web server component of Dup Scout Enterprise 9.9.14, Disk Savvy Enterprise 9.9.14, Sync Breeze Enterprise 9.9.16, and Disk Pulse Enterprise 9.9.16 where an attacker can craft a malicious GET request and exploit the web server component. Successful exploitation of the software will allow an attacker to gain complete access to the system with NT AUTHORITY / SYSTEM level privileges. The vulnerability lies due to improper handling and sanitization of the incoming request.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-01-24T15:00:00
Updated: 2024-08-05T19:05:20.022Z
Reserved: 2017-08-25T00:00:00
Link: CVE-2017-13696
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-01-24T15:29:01.057
Modified: 2024-11-21T03:11:27.093
Link: CVE-2017-13696
Redhat
No data.