CVE-2005-2758
published 2005-10-05CVE-2005-2758: Integer signedness error in the administrative interface for Symantec AntiVirus Scan Engine 4.0 and 4.3 allows remote attackers to execute arbitrary code via…
PriorityP342critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
13.44%
96.0th percentile
Integer signedness error in the administrative interface for Symantec AntiVirus Scan Engine 4.0 and 4.3 allows remote attackers to execute arbitrary code via crafted HTTP headers with negative values, which lead to a heap-based buffer overflow.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| symantec | antivirus_scan_engine | — | — |
| symantec | antivirus_scan_engine | — | — |
| symantec | antivirus_scan_engine_for_network_attached_storage | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
ghsa5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7pc3-f52v-pph8: Integer signedness error in the administrative interface for Symantec AntiVirus Scan Engine 4
ghsa_unreviewed·2022-05-01
CVE-2005-2758 [HIGH] GHSA-7pc3-f52v-pph8: Integer signedness error in the administrative interface for Symantec AntiVirus Scan Engine 4
Integer signedness error in the administrative interface for Symantec AntiVirus Scan Engine 4.0 and 4.3 allows remote attackers to execute arbitrary code via crafted HTTP headers with negative values, which lead to a heap-based buffer overflow.
GHSA
Mortbay Jetty Discloses JSP Source Code
ghsa·2022-05-01·CVSS 5.0
CVE-2005-3747 [MEDIUM] CWE-200 Mortbay Jetty Discloses JSP Source Code
Mortbay Jetty Discloses JSP Source Code
Unspecified vulnerability in Jetty before 5.1.6 allows remote attackers to obtain source code of JSP pages, possibly involving requests for .jsp files with URL-encoded backslash (`%5C`) characters. NOTE: this might be the same issue as CVE-2006-2758.
GHSA
Jetty Directory Traversal Vulnerability
ghsa·2022-05-01·CVSS 5.0
CVE-2006-2758 [MEDIUM] CWE-22 Jetty Directory Traversal Vulnerability
Jetty Directory Traversal Vulnerability
Directory traversal vulnerability in jetty 6.0.x (jetty6) beta16 allows remote attackers to read arbitrary files via a `%2e%2e%5c` (encoded `../`) in the URL. NOTE: this might be the same issue as CVE-2005-3747.
Red Hat
jetty: Jetty URL encoded format directory traversal
vendor_redhat·2005-11-18·CVSS 5.0
CVE-2006-2758 [MEDIUM] CWE-22 jetty: Jetty URL encoded format directory traversal
jetty: Jetty URL encoded format directory traversal
Directory traversal vulnerability in jetty 6.0.x (jetty6) beta16 allows remote attackers to read arbitrary files via a %2e%2e%5c (encoded ../) in the URL. NOTE: this might be the same issue as CVE-2005-3747.
A flaw was found in Jetty. This issue could allow a remote attacker to send a specially-crafted URL request containing hexadecimal URL encoded "dot-dot" sequences (%2e%2e%5c) to traverse directories and view files and folders outside of the web root directory.
Package: jetty (Red Hat Enterprise Linux 7) - Not affected
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/17049http://securityreason.com/securityalert/48http://securitytracker.com/id?1015001http://www.idefense.com/application/poi/display?id=314&type=vulnerabilitieshttp://www.kb.cert.org/vuls/id/849209http://www.osvdb.org/19854http://www.securityfocus.com/bid/15001http://www.symantec.com/avcenter/security/Content/2005.10.04.htmlhttp://www.vupen.com/english/advisories/2005/1954https://exchange.xforce.ibmcloud.com/vulnerabilities/22519http://secunia.com/advisories/17049http://securityreason.com/securityalert/48http://securitytracker.com/id?1015001http://www.idefense.com/application/poi/display?id=314&type=vulnerabilitieshttp://www.kb.cert.org/vuls/id/849209http://www.osvdb.org/19854http://www.securityfocus.com/bid/15001http://www.symantec.com/avcenter/security/Content/2005.10.04.htmlhttp://www.vupen.com/english/advisories/2005/1954https://exchange.xforce.ibmcloud.com/vulnerabilities/22519
2005-10-05
Published