Multiple buffer overflows in the CentennialIPTransferServer service (XFERWAN.EXE), as used by (1) Centennial Discovery 2006 Feature Pack 1, (2) Numara Asset Manager 8.0, and (3) Symantec Discovery 6.5, allow remote attackers to execute arbitrary code via long strings in a crafted TCP packet.
Link | Tags |
---|---|
http://secunia.com/secunia_research/2007-41/advisory/ | vendor advisory |
http://www.vupen.com/english/advisories/2007/1834 | vdb entry |
http://www.securityfocus.com/bid/24002 | vdb entry |
http://www.vupen.com/english/advisories/2007/1833 | vdb entry |
http://www.securitytracker.com/id?1018072 | vdb entry |
http://secunia.com/secunia_research/2007-42/advisory/ | vendor advisory |
http://www.vupen.com/english/advisories/2007/1832 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34313 | vdb entry |
http://secunia.com/secunia_research/2007-43/advisory/ | vendor advisory |
http://secunia.com/advisories/24090 | third party advisory vendor advisory |
http://secunia.com/advisories/24329 | third party advisory vendor advisory |
http://osvdb.org/35076 | vdb entry |
http://secunia.com/advisories/24281 | third party advisory vendor advisory |