Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

NaviCOPA Web Server Remote Buffer Overflow and Source Code Information Disclosure Vulnerabilities

NaviCOPA Web Server is prone to a remote buffer-overflow vulnerability and an information-disclosure vulnerability because the application fails to properly bounds-check or validate user-supplied input.

Successful exploits of the buffer-overflow issue may lead to the execution of arbitrary code in the context of the application or to denial-of-service conditions. Also, attackers can exploit the information-disclosure issue to retrieve arbitrary source code in the context of the webserver process. Information harvested may aid in further attacks.

NaviCOPA Web Server 3.01 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus