|Title:||VirusWall's catinfo overflow|
The remote cgi /catinfo seems to be vulnerable
to a buffer overflow when it receives a too long
input strings, allowing any user to execute arbitrary
commands as root.
This CGI usually comes with the VirusWall suite.
Solution : if you are using VirusWall, upgrade to version 3.6, or
else you *may* ignore this warning
Risk factor : High
BugTraq ID: 2579|
Common Vulnerability Exposure (CVE) ID: CVE-2001-0432
Bugtraq: 20010413 Trend Micro Interscan VirusWall 3.01 vulnerability (Google Search)
|Copyright||This script is Copyright (C) 2001 Renaud Deraison|
|This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.