Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/15873 | vdb entry exploit |
http://secunia.com/advisories/18013 | third party advisory |
http://www.securityfocus.com/archive/1/419586/100/0/threaded | mailing list |
http://www.cybsec.com/vuln/CYBSEC_Security_Advisory_AppScanQA_RemoteCodeExec.pdf | exploit |
http://securitytracker.com/id?1015362 | vdb entry |
http://securityreason.com/securityalert/260 | third party advisory |
http://www.vupen.com/english/advisories/2005/2933 | vdb entry |