CVE-2006-3838

Eiqnetworks Enterprise Security Analyzer < 2.4.0 - Memory Corruption

Title source: rule

Description

Multiple stack-based buffer overflows in eIQnetworks Enterprise Security Analyzer (ESA) before 2.5.0, as used in products including (a) Sidewinder, (b) iPolicy Security Manager, (c) Astaro Report Manager, (d) Fortinet FortiReporter, (e) Top Layer Network Security Analyzer, and possibly other products, allow remote attackers to execute arbitrary code via long (1) DELTAINTERVAL, (2) LOGFOLDER, (3) DELETELOGS, (4) FWASERVER, (5) SYSLOGPUBLICIP, (6) GETFWAIMPORTLOG, (7) GETFWADELTA, (8) DELETERDEPDEVICE, (9) COMPRESSRAWLOGFILE, (10) GETSYSLOGFIREWALLS, (11) ADDPOLICY, and (12) EDITPOLICY commands to the Syslog daemon (syslogserver.exe); (13) GUIADDDEVICE, (14) ADDDEVICE, and (15) DELETEDEVICE commands to the Topology server (Topology.exe); the (15) LICMGR_ADDLICENSE command to the License Manager (EnterpriseSecurityAnalyzer.exe); the (16) TRACE and (17) QUERYMONITOR commands to the Monitoring agent (Monitoring.exe); and possibly other vectors related to the Syslog daemon (syslogserver.exe).

Exploits (8)

metasploit WORKING POC NORMAL
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/misc/eiqnetworks_esa.rb
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16438
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16451
exploitdb WORKING POC VERIFIED
by ri0t · pythonremotewindows
https://www.exploit-db.com/exploits/2140
exploitdb WORKING POC VERIFIED
by ri0t · pythonremotewindows
https://www.exploit-db.com/exploits/2074
exploitdb WORKING POC VERIFIED
by ri0t · pythonremotewindows
https://www.exploit-db.com/exploits/2075
exploitdb WORKING POC VERIFIED
by Kevin Finisterre · perlremotewindows
https://www.exploit-db.com/exploits/2080
metasploit WORKING POC NORMAL
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/misc/eiqnetworks_esa_topology.rb

Scores

EPSS 0.7153
EPSS Percentile 98.7%

Classification

CWE
CWE-119
Status draft

Affected Products (1)

eiqnetworks/enterprise_security_analyzer < 2.4.0

Timeline

Published Jul 27, 2006
Tracked Since Feb 18, 2026