Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the ISAPI DLL filter for Macromedia JRun 3.1 allows remote attackers to execute arbitrary code via a direct request to the filter with a long HTTP host header field in a URL for a .jsp file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Macromedia JRun Host头字段远程缓冲区溢出漏洞
Vulnerability Description
Macromedia JRun是一款使用在IIS 4/5服务器上的J2EE应用服务程序。 Macromedia JRun对用户提交的Host头信息数据缺少正确检查,可导致远程攻击者进行缓冲区溢出攻击。 当JRun安装后,一ISAPI过滤程序被存储在/scripts虚拟目录中,如果请求指向.jsp,JRun过滤程序就会处理此JSP请求并返回响应信息给客户端,但是如果ISAPI DLL以应用程序方式直接访问的情况下,通过提交带超长Host头字段的请求给DLL,就可以导致产生缓冲区溢出,由于jrun DLL装载
CVSS Information
N/A
Vulnerability Type
N/A