20020914 Planet Web Software Buffer Overflowmailing list
http://archives.neohapsis.com/archives/bugtraq/2002-09/0166.html CVE-2002-1489
PlanetWeb 1.14 - GET Buffer Overflow
Record summary
CVE-2002-1489 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in PlanetDNS PlanetWeb 1.14 and earlier allows remote attackers to execute arbitrary code via (1) an HTTP GET request with a long URL or (2) a request with a long method name.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBPlanetWeb 1.14 - GET Buffer OverflowExploitDB exploitby UkR-XblPNot analyzed1 file
References
620021017 New buffer overflow in plaetDNSmailing list
http://archives.neohapsis.com/archives/bugtraq/2002-10/0236.html planetweb-long-url-bo(10124)vdb entry
http://www.iss.net/security_center/static/10124.php planetweb-long-url-bo(10391)vdb entry
http://www.iss.net/security_center/static/10391.php 5710vdb entry
http://www.securityfocus.com/bid/5710 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-1489