Vulnerabilities > CVE-2005-4270 - Remote Buffer Overflow vulnerability in Watchfire Appscan QA 5.0.134/5.0.609

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
watchfire
exploit available

Summary

Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.

Vulnerable Configurations

Part Description Count
Application
Watchfire
2

Exploit-Db

descriptionWatchfire AppScan QA 5.0.x Remote Code Execution Exploit PoC. CVE-2005-4270. Remote exploit for windows platform
idEDB-ID:1374
last seen2016-01-31
modified2005-12-15
published2005-12-15
reporterMariano Nuñez
sourcehttps://www.exploit-db.com/download/1374/
titleWatchfire AppScan QA 5.0.x - Remote Code Execution Exploit PoC