Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in WinSig.exe in eSignal 7.5 and 7.6 allows remote attackers to execute arbitrary code via a long STREAMQUOTE tag.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ESignal远程缓冲区溢出漏洞
Vulnerability Description
eSignal可提供实时的金融和证券信息的系统。 eSignal包含的"WinSig.exe"应用程序在处理数据请求时存在问题,远程攻击者可以利用这个漏洞进行缓冲区溢出攻击,可能以进程权限在系统上执行任意指令。 提交超长请求给"WinSig.exe"监听的80端口,当处理此类请求时,如果参数字符串超过1040字符,可触发典型的缓冲区溢出,精心构建提交数据,可能以进程权限在系统上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A