Vulnerabilities > CVE-2001-0476 - Buffer Overflow vulnerability in Swsoft Aspseek 1.0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
swsoft
exploit available

Summary

Multiple buffer overflows in s.cgi program in Aspseek search engine 1.03 and earlier allow remote attackers to execute arbitrary commands via (1) a long HTTP query string, or (2) a long tmpl parameter.

Vulnerable Configurations

Part Description Count
Application
Swsoft
2

Exploit-Db

descriptionSWSoft ASPSeek 1.0 s.cgi Buffer Overflow Vulnerability. CVE-2001-0476. Remote exploit for cgi platform
idEDB-ID:20689
last seen2016-02-02
modified2001-03-19
published2001-03-19
reporterteleh0r
sourcehttps://www.exploit-db.com/download/20689/
titleSWSoft ASPSeek 1.0 s.cgi Buffer Overflow Vulnerability