BakBone NetVault Configure.CFG Local Buffer Overflow Vulnerability

NetVault is reported prone to a local buffer overflow vulnerability.

It is reported that a local attacker can exploit this vulnerability by supplying excessive data through a variable in the 'configure.cfg' file.

A successful attack can allow local attackers to execute arbitrary code on a vulnerable computer to gain elevated privileges.

This issue has been confirmed in NetVault 7 packages running on Windows platforms. Other versions of NetVault running on different platforms may be affected as well.


 

Privacy Statement
Copyright 2010, SecurityFocus