Stack-based buffer overflow in TreeAction.do in Sybase EAServer 4.2.5 through 5.2 allows remote authenticated users to execute arbitrary code via a large javascript parameter.
Link | Tags |
---|---|
http://www.sybase.com/detail?id=1036742 | patch vendor advisory |
http://securitytracker.com/id?1014497 | vdb entry |
http://secunia.com/advisories/16108 | third party advisory |
http://marc.info/?l=bugtraq&m=112146180532313&w=2 | mailing list |
http://www.spidynamics.com/spilabs/advisories/sybaseEAserverOverflow.htm | patch vendor advisory |