Vulnerabilities > CVE-2001-0236 - Buffer Overflow vulnerability in SUN Solaris and Sunos
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Buffer overflow in Solaris snmpXdmid SNMP to DMI mapper daemon allows remote attackers to execute arbitrary commands via a long "indication" event.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 6 |
Exploit-Db
description Solaris 2.6/7.0/8 snmpXdmid Buffer Overflow Vulnerability (msf). CVE-2001-0236. Remote exploit for solaris platform id EDB-ID:20649 last seen 2016-02-02 modified 2001-03-15 published 2001-03-15 reporter vlad902 source https://www.exploit-db.com/download/20649/ title Solaris 2.6/7.0/8 snmpXdmid Buffer Overflow Vulnerability msf description Solaris 2.6/7.0/8 snmpXdmid Buffer Overflow Vulnerability. CVE-2001-0236. Remote exploit for solaris platform id EDB-ID:20648 last seen 2016-02-02 modified 2001-03-15 published 2001-03-15 reporter Last Stage of Delirium source https://www.exploit-db.com/download/20648/ title Solaris 2.6/7.0/8 snmpXdmid Buffer Overflow Vulnerability
Nessus
NASL family | Gain a shell remotely |
NASL id | SNMPXDMID.NASL |
description | The remote RPC service 100249 (snmpXdmid) is vulnerable to a heap overflow which allows any user to obtain a root shell on this host. ELVISCICADA is one of multiple Equation Group vulnerabilities and exploits disclosed on 2017/04/08 by a group known as the Shadow Brokers. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 10659 |
published | 2001-05-03 |
reporter | This script is Copyright (C) 2001-2018 Intranode |
source | https://www.tenable.com/plugins/nessus/10659 |
title | Solaris snmpXdmid Long Indication Event Overflow (ELVISCICADA) |
code |
|
Saint
bid | 2417 |
description | snmpXdmid buffer overflow |
id | net_snmp_snmpxdmid |
osvdb | 546 |
title | solaris_snmpxdmid |
type | remote |
References
- http://marc.info/?l=bugtraq&m=98462536724454&w=2
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/207
- http://www.cert.org/advisories/CA-2001-05.html
- http://www.ciac.org/ciac/bulletins/l-065.shtml
- http://www.securityfocus.com/bid/2417
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6245