Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

AttachmateWRQ Reflection for Secure IT Remote Format String Vulnerability

A remote format-string vulnerability affects AttachmateWRQ Reflection for Secure IT. The application fails to properly sanitize user-supplied input data before using it in a formatted-printing function.

A remote attacker may leverage this issue to execute arbitrary machine code, possibly allowing for privilege escalation and for the bypassing of SFTP-only access controls on affected SSH servers. Attackers may also cause a denial-of-service condition against the affected SSH server.







 

Privacy Statement
Copyright 2008, SecurityFocus