Vulnerabilities > CVE-2006-5571 - Buffer Overflow vulnerability in Kynoslogic Cruiseworks 1.09C/1.09D

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
kynoslogic
exploit available

Summary

Stack-based buffer overflow in /scripts/cruise/cws.exe in CruiseWorks 1.09c and 1.09d allows remote attackers to execute arbitrary code via a long string in the doc parameter. This vulnerability is addressed in the following product release: Kynoslogic, CruiseWorks, 1.09e

Vulnerable Configurations

Part Description Count
Application
Kynoslogic
2

Exploit-Db

descriptionCruiseworks 1.09 Cws.exe Doc Buffer Overflow Vulnerability. CVE-2006-5571. Remote exploit for windows platform
idEDB-ID:28850
last seen2016-02-03
modified2006-10-24
published2006-10-24
reporterTan Chew Keong
sourcehttps://www.exploit-db.com/download/28850/
titleCruiseworks 1.09 Cws.exe Doc Buffer Overflow Vulnerability