CVE-2008-4383
Published Oct 3, 2008
Last updated 6 years ago
Overview
- Description
- Stack-based buffer overflow in the Agranet-Emweb embedded management web server in Alcatel OmniSwitch OS7000, OS6600, OS6800, OS6850, and OS9000 Series devices with AoS 5.1 before 5.1.6.463.R02, 5.4 before 5.4.1.429.R01, 6.1.3 before 6.1.3.965.R01, 6.1.5 before 6.1.5.595.R01, and 6.3 before 6.3.1.966.R01 allows remote attackers to execute arbitrary code via a long Session cookie.
- Source
- cret@cert.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C6A279F1-071D-4863-9B8A-203DC16F93B2", "versionEndExcluding": "5.1.6.463.r02", "versionStartIncluding": "5.1" }, { "criteria": "cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F42552F9-66F9-4BAE-B9D1-A26493BFC03B", "versionEndExcluding": "5.4.1.429.r01", "versionStartIncluding": "5.4" }, { "criteria": "cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BD33FE30-180C-4595-A132-FAFD6DF3ACB3", "versionEndExcluding": "6.1.3.965.r01", "versionStartIncluding": "6.1.3" }, { "criteria": "cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "48CD9501-9110-4BDB-8BB8-E1E109A0E902", "versionEndExcluding": "6.1.5.595.r01", "versionStartIncluding": "6.1.5" }, { "criteria": "cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3B8892FF-96F1-4249-A9E2-DCCB0B251CA6", "versionEndExcluding": "6.3.1.966.r01", "versionStartIncluding": "6.3" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:alcatel-lucent:omniswitch:os6600:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "18275D45-CBFB-4F72-AED3-50CF6B26A58D" }, { "criteria": "cpe:2.3:h:alcatel-lucent:omniswitch:os6800:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9EABF0C1-2359-445F-B5E2-72E754F72C9D" }, { "criteria": "cpe:2.3:h:alcatel-lucent:omniswitch:os6850:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "3EAD34DA-3CB4-4E7E-B486-07E9F2796AC3" }, { "criteria": "cpe:2.3:h:alcatel-lucent:omniswitch:os7000:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A3768D0F-92EC-4F4B-AD24-11B0459903AF" }, { "criteria": "cpe:2.3:h:alcatel-lucent:omniswitch:os9000:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "FE7A3488-15B6-4EB3-B478-5EF005997EB2" } ], "operator": "OR" } ], "operator": "AND" } ]