20010515 iPlanet - Netscape Enterprise Web Publisher Buffer Overflowmailing list
http://archives.neohapsis.com/archives/bugtraq/2001-05/0132.html CVE-2001-0746
iPlanet 4.1 Web Publisher - Remote Buffer Overflow (1)
Record summary
CVE-2001-0746 has a selected CVSS score of 10.0; EIP currently links 2 catalogued exploits.
Description
Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a long URI with (1) GETPROPERTIES, (2) GETATTRIBUTENAMES, or other methods.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBiPlanet 4.1 Web Publisher - Remote Buffer Overflow (1)ExploitDB exploitby Santi ClausNot analyzed1 file
ExploitDBiPlanet 4.1 Web Publisher - Remote Buffer Overflow (2)ExploitDB exploitby Gabriel MaggiottiNot analyzed1 file
References
5iplanet.comConfirmation
http://iplanet.com/products/iplanet_web_enterprise/iwsalert5.11.html 2732vdb entry
http://www.securityfocus.com/bid/2732 netscape-enterprise-uri-bo(6554)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/6554 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0746