CVE-2009-1210
Wireshark < 1.0.5 - Format String Vulnerability
Title source: ruleDescription
Format string vulnerability in the PROFINET/DCP (PN-DCP) dissector in Wireshark 1.0.6 and earlier allows remote attackers to execute arbitrary code via a PN-DCP packet with format string specifiers in the station name. NOTE: some of these details are obtained from third party information.
Exploits (1)
References (22)
... and 2 more
Scores
EPSS
0.3447
EPSS Percentile
97.0%
Details
CWE
CWE-134
Status
published
Products (42)
wireshark/wireshark
0.6
wireshark/wireshark
0.7.9
wireshark/wireshark
0.8.16
wireshark/wireshark
0.8.19
wireshark/wireshark
0.9.5
wireshark/wireshark
0.9.7
wireshark/wireshark
0.9.8
wireshark/wireshark
0.9.10
wireshark/wireshark
0.9.14
wireshark/wireshark
0.10
... and 32 more
Published
Apr 01, 2009
Tracked Since
Feb 18, 2026