topology software vulnerabilities
vulnerabilities.aspcode.net
Searching topology software vulnerabilities
Cisco IOS 12.0(5)XU through 12.1(2) allows remo
Cisco
|
IOS
|
Cisco IOS 12.0(5)XU through 12.1(2) allows remote attackers to read system administration and topology information via an "snmp-server host" command, which creates a readable "community" community string if one has not been previously created.
Multiple stack-based buffer overflows in eIQnet
eIQnetworks
|
stack-based
|
Enterprise
|
overflows
|
Security
|
Analyzer
|
Multiple
|
buffer
|
Multiple stack-based buffer overflows in eIQnetworks Enterprise Security Analyzer (ESA) before 2.5.0, as used in products including (a) Sidewinder, (b) iPolicy Security Manager, (c) Astaro Report Manager, (d) Fortinet FortiReporter, (e) Top Layer Network Security Analyzer, and possibly other products, allow remote attackers to execute arbitrary code via long (1) DELTAINTERVAL, (2) LOGFOLDER, (3) DELETELOGS, (4) FWASERVER, (5) SYSLOGPUBLICIP, (6) GETFWAIMPORTLOG, (7) GETFWADELTA, (8) DELETERDEPDEVICE, (9) COMPRESSRAWLOGFILE, (10) GETSYSLOGFIREWALLS, (11) ADDPOLICY, and (12) EDITPOLICY commands to the Syslog daemon (syslogserver.exe); (13) GUIADDDEVICE, (14) ADDDEVICE, and (15) DELETEDEVICE commands to the Topology server (Topology.exe); the (15) LICMGR_ADDLICENSE command to the License Manager (EnterpriseSecurityAnalyzer.exe); and possibly other vectors related to the Syslog daemon (syslogserver.exe).
The LLTD Mapper in Microsoft Windows Vista allo
relationships
|
nonexistent
|
attackers
|
Microsoft
|
topology
|
provided
|
network
|
differs
|
address
|
Bridge"
|
Windows
|
Source
|
Mapper
|
header
|
"Spoof
|
packet
|
attack
|
allows
|
remote
|
bridge
|
HELLO
|
field
|
using
|
spoof
|
hosts
|
Vista
|
LLTD
|
Real
|
BASE
|
into
|
map
|
MAC
|
aka
|
The LLTD Mapper in Microsoft Windows Vista allows remote attackers to spoof hosts, and nonexistent bridge relationships, into the network topology map by using a MAC address that differs from the MAC address provided in the Real Source field of the LLTD BASE header of a HELLO packet, aka the "Spoof on Bridge" attack.
Software vulnerabilities results 1 to 4 of 4
Page:
1