Network Security News – Saturday, July 29, 2006 Events
eIQnetworks Enterprise Security Analyzer syslogserver.exe Multiple Command Remote Overflow
A remote overflow exists in eIQnetworks Enterprise Security Analyzer. The Syslog daemon (syslogserver.exe) fails to perform proper bounds checking on various commands passed through TCP port 10617, resulting in a buffer overflow. With a specially crafted request, an attacker can execute arbitrary code resulting in a loss of integrity.. Read more at osvdb.org/27527
eIQnetworks Enterprise Security Analyzer syslogserver.exe Pre-authentication Remote Overflow
A remote overflow exists in eIQnetworks Enterprise Security Analyzer. The Syslog daemon (syslogserver.exe) fails to perform proper bounds checking on the listening TCP port requests resulting in a buffer overflow. With a specially crafted request, an attacker can execute arbitrary code resulting in a loss of integrity.. Read more at osvdb.org/27525
eIQnetworks Enterprise Security Analyzer Topology.exe Pre-authentication Remote Overflow
A remote overflow exists in eIQnetworks Enterprise Security Analyzer. Topology.exe fails to perform proper bounds checking on the GUIADDDEVICE, ADDDEVICE, or DELETEDEVICE commands passed to TCP port 10628 resulting in a stack based buffer overflow. With a specially crafted request, an attacker can execute arbitrary code resulting in a loss of integrity.. Read more at osvdb.org/27528
eIQnetworks Enterprise Security Analyzer Monitoring.exe Unspecified Issue
An unspecified remote vulnerability exists in eIQnetworks Enterprise Security Analyzer Monitoring.exe. With a specially crafted request sent to port TCP 9999, an attacker can execute arbitrary code resulting in a loss of integrity.. Read more at osvdb.org/27529
eIQnetworks Enterprise Security Analyzer EnterpriseSecurityAnalyzer.exe LICMGR_ADDLICENSE Command Remote Overflow
A remote overflow exists in eIQnetworks Enterprise Security Analyzer. The license manager daemon (EnterpriseSecurityAnalyzer.exe) fails to perform proper bounds checking on the LICMGR_ADDLICENSE commands resulting in a buffer overflow. With a specially crafted request, an attacker can execute arbitrary code resulting in a loss of integrity.. Read more at osvdb.org/27526
Leave a Reply