Vulnerability Name: | CVE-1999-1237 (CCN-2272) | ||||||||
Assigned: | 1999-06-06 | ||||||||
Published: | 1999-06-06 | ||||||||
Updated: | 2020-07-21 | ||||||||
Summary: | Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attackers to execute arbitrary commands via (1) a long username, (2) a long password, and (3) other unspecified methods. | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||
Vulnerability Type: | CWE-120 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-1999-1237 Source: CCN Type: BugTraq Mailing List, 1999-06-07 2:57:44 Buffer overflows in smbval library Source: CCN Type: OSVDB ID: 9686 Apache::AuthenSmb smbvalid SMB Authentication Library Multiple Overflows Source: CCN Type: OSVDB ID: 9687 Apache::AuthenSmb smbval SMB Authentication Library Multiple Overflows Source: BUGTRAQ Type: Third Party Advisory, VDB Entry 19990606 Buffer overflows in smbval library Source: XF Type: Third Party Advisory, VDB Entry smbvalid-bo(2272) Source: XF Type: UNKNOWN smbvalid-bo(2272) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |