Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple stack-based buffer overflows in Sybase Adaptive Server Enterprise (ASE) 12.x before 12.5.3 ESD#1 allow remote authenticated users to execute arbitrary code via the (1) attrib_valid function, (2) covert function, (3) declare statement, or (4) a crafted query plan, or remote authenticated users with database owner or "sa" role privileges to execute arbitrary code via (5) a crafted install java statement.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sybase Adaptive Server Enterprise (ASE)缓冲区溢出漏洞
Vulnerability Description
Sybase Adaptive Server Enterprise (ASE) 12.x 12.5.3 ESD#1以前的版本存在多个基于堆栈的缓冲区溢出漏洞。 远程认证用户借助多个语句执行任意代码,这些语句包括:(1) attrib_valid函数,(2) 隐蔽函数,(3)申明语句,或者(4)精心构建的查询计划。或者带有数据库拥有者身份或“sa”角色权限的远程认证用户借助(5)一个畸形的Java安装语句执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A