Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-9451
Description:Multiple stack-based buffer overflows in the DIVA web service API (/webservice) in VDG Security SENSE (formerly DIVA) 2.3.13 allow remote attackers to execute arbitrary code via the (1) user or (2) password parameter in an AuthenticateUser request.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-9451
BugTraq ID: 71736
http://www.securityfocus.com/bid/71736
http://seclists.org/fulldisclosure/2014/Dec/76
http://packetstormsecurity.com/files/129656/VDG-Security-SENSE-2.3.13-File-Disclosure-Bypass-Buffer-Overflow.html
https://www.sec-consult.com/fxdata/seccons/prod/temedia/advisories_txt/20141218-0_VDG_Security_SENSE_Multiple_critical_vulnerabilities_v10.txt
XForce ISS Database: sense-authenticateuser-bo(99334)
https://exchange.xforce.ibmcloud.com/vulnerabilities/99334




© 1998-2025 E-Soft Inc. All rights reserved.