CVE-2011-5227
Enterasys Netsight < 4.1.0.79 - Memory Corruption
Title source: ruleDescription
Stack-based buffer overflow in the Syslog service (nssyslogd.exe) in Enterasys Network Management Suite (NMS) before 4.1.0.80 allows remote attackers to execute arbitrary code via a long PRIO field in a message to UDP port 514.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/23887
metasploit
WORKING POC
NORMAL
by Jeremy Brown · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/misc/enterasys_netsight_syslog_bof.rb
References (6)
Scores
EPSS
0.7800
EPSS Percentile
99.0%
Details
CWE
CWE-119
Status
published
Products (1)
enterasys/netsight
< 4.1.0.79 (2 CPE variants)
Published
Oct 25, 2012
Tracked Since
Feb 18, 2026