CVE-2008-0532 (ACS for Windows, ACS Solution Engine, user_changeable_password) [Sitemap] - HeapOverflow Computer Security Community & Forums : Heap Overflow.com

PDA

View Full Version : CVE-2008-0532 (ACS for Windows, ACS Solution Engine, user_changeable_password)


Heap
17-03-08, 16:22
Multiple buffer overflows in securecgi-bin/CSuserCGI.exe in User-Changeable Password (UCP) before 4.2 in Cisco Secure Access Control Server (ACS) for Windows and ACS Solution Engine allow remote attackers to execute arbitrary code via a long argument located immediately after the Logout argument, and possibly unspecified other vectors.

More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0532)