Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based and heap-based buffer overflows in ProxyNow! 2.75 and earlier allow remote attackers to execute arbitrary code via a GET request with a long ftp:// URL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
InternetNow ProxyNow基于堆栈的缓冲区溢出漏洞
Vulnerability Description
ProxyNow!是一款提供多台电脑共享上网的系统。 ProxyNow!对HTTP GET请求缺少充分的边界缓冲区检查,远程攻击者可以利用这个漏洞进行缓冲区溢出,精心构建提交数据可能以进程权限在系统上执行任意指令。 提交包含超长字符串的HTTP GET请求(包含' ftp:// '前缀)到服务器监听的3128 TCP端口,可触发基于堆的缓冲区溢出。另外由于'wsprintfA'调用对输入缺少充分边界检查,直接提交超长GET 请求也可以触发基于栈的溢出,精心构交数据可能以进程权限在系统上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A