Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to execute arbitrary code via a NOTIFY directive with a long Location URL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft UPnP NOTIFY缓冲区溢出漏洞(MS01-059)
Vulnerability Description
UPnP(Universal Plug and Play,通用即插即用)是由通用即插即用论坛(UPnP Forum)提出的一套网络协议。该协议可实现家庭网络和公司网络中的各种设备相互连接,并简化相关网络的实现。UPnP在Windows XP和ME中被支持。 UPnP的实现存在缓冲区溢出问题,可以使攻击者通过溢出攻击远程以local system的身份在主机上执行任意指令。 当处理NOTIFY命令中的location字段时,如果IP地址、端口和文件名部分超长,就会发生缓冲区溢出。导致服务器程序进程内存空间的
CVSS Information
N/A
Vulnerability Type
N/A