Vulnerabilities > CVE-2007-1371 - Remote vulnerability in Radscan Conquest

047910
CVSS 6.9 - MEDIUM
Attack vector
LOCAL
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
radscan
exploit available

Summary

Multiple buffer overflows in Conquest 8.2a and earlier (1) allow local users to gain privileges by querying a metaserver that sends a long server entry processed by metaGetServerList and allow remote metaservers to execute arbitrary code via a long server entry processed by metaGetServerList; (2) allow attackers to have an unknown impact by exceeding the configured number of metaservers; and allow remote attackers to corrupt memory via a SP_CLIENTSTAT packet with certain values of (3) unum or (4) snum, different vulnerabilities than CVE-2003-0933.

Vulnerable Configurations

Part Description Count
Application
Radscan
1

Exploit-Db

descriptionRadscan Conquest 8.2 Multiple Remote Vulnerabilities. CVE-2007-1371. Dos exploit for linux platform
idEDB-ID:29717
last seen2016-02-03
modified2007-03-07
published2007-03-07
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/29717/
titleradscan conquest 8.2 - Multiple Vulnerabilities