Vulnerabilities > CVE-2002-0387 - Unspecified vulnerability in SUN ONE Application Server 6.0/6.5

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
sun
nessus

Summary

Buffer overflow in gxnsapi6.dll NSAPI plugin of the Connector Module for Sun ONE Application Server before 6.5 allows remote attackers to execute arbitrary code via a long HTTP request URL.

Vulnerable Configurations

Part Description Count
Application
Sun
2

Nessus

NASL familyWeb Servers
NASL idIPLANET_APP_SERVER_OVERFLOW.NASL
descriptionThe remote Sun ONE Application Server (formerly known as iPlanet Application Server) is vulnerable to a buffer overflow when a user provides a long buffer after the application service prefix, as in GET /[AppServerPrefix]/[long buffer] An attacker may use this flaw to execute arbitrary code on this host or disable it remotely.
last seen2020-06-01
modified2020-06-02
plugin id11403
published2003-03-16
reporterThis script is Copyright (C) 2003-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/11403
titleiPlanet Application Server Prefix Remote Overflow