[VulnWatch] BakBone Netvault 6.x/7.x Local Stack Buffer Overflow

class101_at_HAT-SQUAD.com
Date: 04/01/05

  • Next message: class101_at_HAT-SQUAD.com: "[VulnWatch] Microsoft Windows Internet Name Service (WINS) Remote Heap Overflow Exploit"
    To: "Full-Disclosure" <Full-Disclosure@lists.grok.org.uk>, <vulnwatch@vulnwatch.org>
    Date: Fri, 1 Apr 2005 16:51:53 +0200
    
    

    According to their website (bakbone.com),
    BakBone Netvault 6.x/7.x is a professional backup software with several
    offices in the world and some pro customers as Apple, AT&T, Pirelli, LMU,
    HP, NIP,NASA, etc....

    A Vulnerability exists in the configure.cfg file

    advisory: class101.org/netv-locsbof.pdf
    poc: class101.org/36/55/op.php

    recommendation: to set stricts acl rules on this file.
    -------------------------------------------------------------
    class101
    Jr. Researcher
    Hat-Squad.com
    -------------------------------------------------------------


  • Next message: class101_at_HAT-SQUAD.com: "[VulnWatch] Microsoft Windows Internet Name Service (WINS) Remote Heap Overflow Exploit"

    Relevant Pages