|
NaviCOPA Web Server Remote Buffer Overflow and Source Code Information Disclosure Vulnerabilities
NaviCOPA Web Server is prone to a remote buffer-overflow vulnerability and an information-disclosure vulnerability because the application fails to properly bounds-check or validate user-supplied input. Successful exploits of the buffer-overflow issue may lead to the execution of arbitrary code in the context of the application or to denial-of-service conditions. Also, attackers can exploit the information-disclosure issue to retrieve arbitrary source code in the context of the webserver process. Information harvested may aid in further attacks. NaviCOPA Web Server 3.01 is vulnerable; other versions may also be affected. |
|
|
Privacy Statement |