CVE-2006-4832
Buffer overflow in the telnet service in Verso NetPerformer FRAD ACT SDM-95xx 7.xx (R1) and earlier, SDM-93xx 10.x.x (R2) and earlier, and SDM-92xx 9.x.x (R1) and earlier allows remote attackers to cause a denial of service (reboot) and possibly execute…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 11.4%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
Buffer overflow in the telnet service in Verso NetPerformer FRAD ACT SDM-95xx 7.xx (R1) and earlier, SDM-93xx 10.x.x (R2) and earlier, and SDM-92xx 9.x.x (R1) and earlier allows remote attackers to cause a denial of service (reboot) and possibly execute arbitrary code via a long username.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 11.44% probability · 96th percentile
- CISA KEV
- Not listed
- Affected
- verso netperformer/frame relay access device act
- Source
- cve@mitre.org
References
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-September/049434.htmlExploit
- http://secunia.com/advisories/21876Exploit, Vendor Advisory
- http://securityreason.com/securityalert/1583
- http://www.securityfocus.com/archive/1/445883/100/0/threaded
- http://www.securityfocus.com/bid/19989Exploit
- http://www.vupen.com/english/advisories/2006/3605
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28908
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-September/049434.htmlExploit
- http://secunia.com/advisories/21876Exploit, Vendor Advisory
- http://securityreason.com/securityalert/1583
- http://www.securityfocus.com/archive/1/445883/100/0/threaded
- http://www.securityfocus.com/bid/19989Exploit
- http://www.vupen.com/english/advisories/2006/3605
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28908
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.