VulnerabilityModified
CVE-2005-2842
Buffer overflow in dwrcs.exe in DameWare Mini Remote Control before 4.9.0 allows remote attackers to execute arbitrary code via the username.
HIGH 7.5EPSS 21.1%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 21.1%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
Buffer overflow in dwrcs.exe in DameWare Mini Remote Control before 4.9.0 allows remote attackers to execute arbitrary code via the username.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 21.12% probability · 97th percentile
- CISA KEV
- Not listed
- Affected
- dameware development/mini remote control server
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/fulldisclosure/2005-08/1074.htmlExploit, Patch, Vendor Advisory
- http://secunia.com/advisories/16655Vendor Advisory
- http://securitytracker.com/id?1014830Patch, Vendor Advisory
- http://www.jpno5.com/Releases/Public/Exploits/Dameware%20Mini%20Remote%20Control%20Exploit/dameware.txtExploit, Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/170905Patch, Third Party Advisory, US Government Resource
- http://www.securityfocus.com/bid/14707Exploit, Patch
- http://www.vupen.com/english/advisories/2005/1596
- https://www.exploit-db.com/exploits/42703/
- http://archives.neohapsis.com/archives/fulldisclosure/2005-08/1074.htmlExploit, Patch, Vendor Advisory
- http://secunia.com/advisories/16655Vendor Advisory
- http://securitytracker.com/id?1014830Patch, Vendor Advisory
- http://www.jpno5.com/Releases/Public/Exploits/Dameware%20Mini%20Remote%20Control%20Exploit/dameware.txtExploit, Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/170905Patch, Third Party Advisory, US Government Resource
- http://www.securityfocus.com/bid/14707Exploit, Patch
- http://www.vupen.com/english/advisories/2005/1596
- https://www.exploit-db.com/exploits/42703/
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.