Vulnerabilities > CVE-2005-4714 - Unspecified vulnerability in Openvmps 1.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Format string vulnerability in the vmps_log function in OpenVMPS (VLAN Management Policy Server) 1.3 allows remote attackers to execute arbitrary code via unknown vectors.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | OpenVMPSd <= 1.3 Remote Format String Exploit (Multiple Targets). CVE-2005-4714. Remote exploit for linux platform |
id | EDB-ID:1487 |
last seen | 2016-01-31 |
modified | 2006-02-10 |
published | 2006-02-10 |
reporter | Gotfault Security |
source | https://www.exploit-db.com/download/1487/ |
title | OpenVMPSd <= 1.3 - Remote Format String Exploit Multiple Targets |
Nessus
NASL family | Gain a shell remotely |
NASL id | OPENVMPS_FORMAT_STRING.NASL |
description | The remote host appears to be running OpenVMPS, an open source VLAN Management Policy Server (VMPS). There is a format string vulnerability in versions of OpenVMPS up to and including 1.3 that may allow remote attackers to crash the server or execute code on the affected host subject to the privileges under which the server operates, possibly root. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 20067 |
published | 2005-10-20 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/20067 |
title | OpenVMPS Logging Function Format String |
code |
|
References
- http://secunia.com/advisories/17128
- http://secunia.com/advisories/17128
- http://www.osvdb.org/19910
- http://www.osvdb.org/19910
- http://www.securiteam.com/unixfocus/6I00F00EAI.html
- http://www.securiteam.com/unixfocus/6I00F00EAI.html
- http://www.securityfocus.com/bid/15072
- http://www.securityfocus.com/bid/15072
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22587
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22587