Multiple heap-based buffer overflows in (1) clsscheduler.exe (aka scheduler client) and (2) srvscheduler.exe (aka scheduler server) in BakBone NetVault Reporter 3.5 before Update4 allow remote attackers to execute arbitrary code via long filename arguments in HTTP requests.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2007-07-30T17:00:00
Updated: 2018-10-15T20:57:01
Reserved: 2007-07-19T00:00:00
Link: CVE-2007-3911
JSON object: View
NVD Information
Status : Modified
Published: 2007-07-30T17:30:00.000
Modified: 2018-10-15T21:32:18.413
Link: CVE-2007-3911
JSON object: View
Redhat Information
No data.
CWE