Description
Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Mariano Nuñez · perlremotewindows
https://www.exploit-db.com/exploits/1374
References (7)
Scores
EPSS
0.0336
EPSS Percentile
87.4%
Details
Status
published
Products (2)
watchfire/appscan_qa
5.0.134
watchfire/appscan_qa
5.0.609
Published
Dec 15, 2005
Tracked Since
Feb 18, 2026