20020614 Lumigent Log Explorer 3.xx extended stored procedures buffer overflowmailing list
http://archives.neohapsis.com/archives/bugtraq/2002-06/0146.html CVE-2002-0942
Lumigent Log Explorer XP - _LogAttach_StartProf Buffer Overflow
Record summary
CVE-2002-0942 has a selected CVSS score of 7.5; EIP currently links 2 catalogued exploits.
Description
Buffer overflows in Lugiment Log Explorer before 3.02 allow attackers with database permissions to execute arbitrary code via long arguments to the extended stored procedures (1) xp_logattach_StartProf, (2) xp_logattach_setport, or (3) xp_logattach.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBLumigent Log Explorer XP - _LogAttach_StartProf Buffer OverflowExploitDB exploitby Martin RakhmanoffNot analyzed1 file
ExploitDBLumigent Log Explorer 3.0.1 - XP_LogAttach_SetPort Buffer OverflowExploitDB exploitby Martin RakhmanoffNot analyzed1 file
References
820020614 Follow-up on Lumigent Log Explorer 3.xx extended stored procedures buffer overflowmailing list
http://online.securityfocus.com/archive/1/277026 logexplorer-mssql-xplogattach-bo(9346)vdb entry
http://www.iss.net/security_center/static/9346.php lumigent.comConfirmation
http://www.lumigent.com/LogExplorer/Support/whatsnew3_03.htm 5016vdb entry
http://www.securityfocus.com/bid/5016 5017vdb entry
http://www.securityfocus.com/bid/5017 5018vdb entry
http://www.securityfocus.com/bid/5018 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-0942