Format string vulnerability in Foundstone FScan 1.12 with banner grabbing enabled allows remote attackers to execute arbitrary code on the scanning system via format string specifiers in the server banner.
Link | Tags |
---|---|
http://www.foundstone.com/knowledge/fscan112_advisory.html | patch vendor advisory |
http://www.securityfocus.com/bid/4549 | vdb entry patch vendor advisory |
http://www.iss.net/security_center/static/8895.php | vdb entry patch vendor advisory |
http://online.securityfocus.com/archive/1/268581 | mailing list vendor advisory |