Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allows remote attackers to execute arbitrary commands via a long HTTP request that is passed to the application server, such as /jsp/.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/2569 | exploit vdb entry vendor advisory |
http://marc.info/?l=bugtraq&m=98692227816141&w=2 | mailing list |