Vulnerabilities > Netsupport

DATE CVE VULNERABILITY TITLE RISK
2011-01-11 CVE-2011-0404 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Netsupport Manager Agent 11.00/9.50
Stack-based buffer overflow in NetSupport Manager Agent for Linux 11.00, for Solaris 9.50, and for Mac OS X 11.00 allows remote attackers to execute arbitrary code via a long control hostname to TCP port 5405, probably a different vulnerability than CVE-2007-5252.
network
low complexity
netsupport CWE-119
7.5
2007-10-06 CVE-2007-5252 Buffer Errors vulnerability in Netsupport products
Buffer overflow in NetSupport Manager (NSM) Client 10.00 and 10.20, and NetSupport School Student (NSS) 9.00, allows remote NSM servers to cause a denial of service or possibly execute arbitrary code via crafted data in the configuration exchange phase of an initial connection setup.
network
low complexity
netsupport CWE-119
critical
10.0
2007-09-24 CVE-2007-5057 Improper Authentication vulnerability in Netsupport Manager Client
NetSupport Manager Client before 10.20.0004 allows remote attackers to bypass the (1) basic and (2) authentication schemes by spoofing the NetSupport Manager.
network
low complexity
netsupport CWE-287
critical
10.0
2004-12-31 CVE-2004-2737 SQL Injection vulnerability in Netsupport DNA Helpdesk 1.01
SQL injection vulnerability in problist.asp in NetSupport DNA HelpDesk 1.01 allows remote attackers to execute arbitrary SQL commands via the where parameter.
network
low complexity
netsupport CWE-89
7.5
2004-03-25 CVE-2004-1861 Weak Password Encryption vulnerability in Netsupport School 7.0/7.01/7.5
Invision NetSupport School Pro uses a weak encryption algorithm to encrypt passwords, which allows local users to obtain passwords.
local
low complexity
netsupport
4.6