CVE-2014-3459

SolarWinds Network Configuration Manager < 7.3 - Remote Code Execution via PEstrarg1 Property

Title source: llm
STIX 2.1

Description

Heap-based buffer overflow in SolarWinds Network Configuration Manager (NCM) before 7.3 allows remote attackers to execute arbitrary code via the PEstrarg1 property.

References (1)

Core 1
Core References
Third Party Advisory x_refsource_misc
http://zerodayinitiative.com/advisories/ZDI-14-133/

Scores

EPSS 0.0455
EPSS Percentile 89.3%

Details

CWE
CWE-119
Status published
Products (3)
solarwinds/network_configuration_manager 7.2.0
solarwinds/network_configuration_manager 7.2.1
solarwinds/network_configuration_manager < 7.2.2
Published Aug 07, 2014
Tracked Since Feb 18, 2026