Vulnerabilities > CVE-2008-7126 - Numeric Errors vulnerability in Microfocus Visibroker

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
microfocus
CWE-189
critical
exploit available

Summary

Integer overflow in osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet with a large string length value to UDP port 14000, which triggers a heap-based buffer overflow.

Vulnerable Configurations

Part Description Count
Application
Microfocus
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionBorland VisiBroker Smart Agent 08.00.00.C1.03 Multiple Remote Vulnerabilities. CVE-2008-7126. Dos exploit for windows platform
idEDB-ID:31330
last seen2016-02-03
modified2008-03-03
published2008-03-03
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/31330/
titleBorland VisiBroker Smart Agent 08.00.00.C1.03 - Multiple Remote Vulnerabilities