Vulnerabilities > CVE-2007-3026 - Remote Integer Overflow vulnerability in Panda Adminsecure 2006
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Integer overflow in Panda Software AdminSecure allows remote attackers to execute arbitrary code via crafted packets with modified length values to TCP ports 19226 or 19227, resulting in a heap-based buffer overflow. Vendor has supplied patch: http://www.pandasoftware.com/Download/tree/
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Windows |
NASL id | PANDA_PAGENT_42.NASL |
description | The Panda AdminSecure Communications Agent software, which is used for centralized management of Panda Antivirus, is installed on the remote Windows host. The version of Communications Agent on the remote host trusts a user-supplied length value for a memory allocation when processing traffic to TCP port 19226 or 19227 by default, resulting in a heap-based buffer overflow. An unauthenticated, remote attacker can leverage this issue to execute arbitrary code with SYSTEM privileges. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 25768 |
published | 2007-07-26 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/25768 |
title | Panda AdminSecure Communications Agent < 4.2 Packet Handling Remote Heap Overflow |
code |
|
Seebug
bulletinFamily | exploit |
description | BUGTRAQ ID: 25046 CVE(CAN) ID: CVE-2007-3026 Panda AdminSecure是熊猫软件公司的企业级安全解决方案。 AdminSecure在处理畸形请求数据时存在漏洞,远程攻击者可能利用此漏洞控制用户系统。 AdminSecure代理默认绑定在TCP 19226或19227端口。当处理监听端口上通讯的时候,代理错误地信任了用户提供的长度值进行内存分配,特定的值可能会触发整数溢出,最终导致堆溢出,成功攻击可以在用户系统上执行任意指令。 Panda AdminSecure 2006 Panda ----- 目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载: <a href="http://www.pandasoftware.com/Download/tree/" target="_blank">http://www.pandasoftware.com/Download/tree/</a> |
id | SSV:2041 |
last seen | 2017-11-19 |
modified | 2007-07-26 |
published | 2007-07-26 |
reporter | Root |
title | Panda AdminSecure代理远程整数溢出漏洞 |
References
- http://osvdb.org/38614
- http://secunia.com/advisories/26157
- http://securityreason.com/securityalert/2917
- http://www.securityfocus.com/archive/1/474551/100/0/threaded
- http://www.securityfocus.com/bid/25046
- http://www.securitytracker.com/id?1018446
- http://www.vupen.com/english/advisories/2007/2641
- http://www.zerodayinitiative.com/advisories/ZDI-07-041.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35600