CVE-2006-3838
Multiple stack-based buffer overflows in eIQnetworks Enterprise Security Analyzer (ESA) before 2.5.0, as used in products including (a) Sidewinder, (b) iPolicy Security Manager, (c) Astaro Report Manager, (d) Fortinet FortiReporter, (e) Top Layer…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 73.6%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Multiple stack-based buffer overflows in eIQnetworks Enterprise Security Analyzer (ESA) before 2.5.0, as used in products including (a) Sidewinder, (b) iPolicy Security Manager, (c) Astaro Report Manager, (d) Fortinet FortiReporter, (e) Top Layer Network Security Analyzer, and possibly other products, allow remote attackers to execute arbitrary code via long (1) DELTAINTERVAL, (2) LOGFOLDER, (3) DELETELOGS, (4) FWASERVER, (5) SYSLOGPUBLICIP, (6) GETFWAIMPORTLOG, (7) GETFWADELTA, (8) DELETERDEPDEVICE, (9) COMPRESSRAWLOGFILE, (10) GETSYSLOGFIREWALLS, (11) ADDPOLICY, and (12) EDITPOLICY commands to the Syslog daemon (syslogserver.exe); (13) GUIADDDEVICE, (14) ADDDEVICE, and (15) DELETEDEVICE commands to the Topology server (Topology.exe); the (15) LICMGR_ADDLICENSE command to the License Manager (EnterpriseSecurityAnalyzer.exe); the (16) TRACE and (17) QUERYMONITOR commands to the Monitoring agent (Monitoring.exe); and possibly other vectors related to the Syslog daemon (syslogserver.exe).
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 73.56% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- eiqnetworks/enterprise security analyzer
- Source
- cve@mitre.org
References
- http://archive.cert.uni-stuttgart.de/bugtraq/2006/08/msg00152.html
- http://secunia.com/advisories/21211Vendor Advisory
- http://secunia.com/advisories/21213Vendor Advisory
- http://secunia.com/advisories/21214Vendor Advisory
- http://secunia.com/advisories/21215Vendor Advisory
- http://secunia.com/advisories/21217Vendor Advisory
- http://secunia.com/advisories/21218Vendor Advisory
- http://securitytracker.com/id?1016580
- http://www.eiqnetworks.com/products/enterprisesecurity/EnterpriseSecurityAnalyzer/ESA_2.5.0_Release_Notes.pdf
- http://www.kb.cert.org/vuls/id/513068US Government Resource
- http://www.osvdb.org/27525
- http://www.osvdb.org/27526
- http://www.osvdb.org/27527
- http://www.osvdb.org/27528
- http://www.securityfocus.com/archive/1/441195/100/0/threaded
- http://www.securityfocus.com/archive/1/441197/100/0/threaded
- http://www.securityfocus.com/archive/1/441198/100/0/threaded
- http://www.securityfocus.com/archive/1/441200/100/0/threaded
- http://www.securityfocus.com/bid/19163
- http://www.securityfocus.com/bid/19164
- http://www.securityfocus.com/bid/19165
- http://www.securityfocus.com/bid/19167
- http://www.tippingpoint.com/security/advisories/TSRT-06-03.htmlVendor Advisory
- http://www.tippingpoint.com/security/advisories/TSRT-06-04.html
- http://www.tippingpoint.com/security/advisories/TSRT-06-07.html
- http://www.vupen.com/english/advisories/2006/2985Vendor Advisory
- http://www.vupen.com/english/advisories/2006/3006Vendor Advisory
- http://www.vupen.com/english/advisories/2006/3007Vendor Advisory
- http://www.vupen.com/english/advisories/2006/3008Vendor Advisory
- http://www.vupen.com/english/advisories/2006/3009Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.