CVE-2010-0313
published 2010-01-14CVE-2010-0313: The core_get_proxyauth_dn function in ns-slapd in Sun Java System Directory Server Enterprise Edition 7.0 allows remote attackers to cause a denial of service…
PriorityP430medium5CVSS 2.0
AVNACLAuNCNINAP
EXPLOIT
EPSS
8.74%
94.6th percentile
The core_get_proxyauth_dn function in ns-slapd in Sun Java System Directory Server Enterprise Edition 7.0 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted LDAP Search Request message.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sun | java_system_directory_server | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
PSOProxy 0.91 - Stack Buffer Overflow (Metasploit)
exploitdb·2010-05-09
CVE-2004-0313 PSOProxy 0.91 - Stack Buffer Overflow (Metasploit)
PSOProxy 0.91 - Stack Buffer Overflow (Metasploit)
---
##
# $Id: psoproxy91_overflow.rb 9262 2010-05-09 17:45:00Z jduck $
##
##
# This file is part of the Metasploit Framework and may be subject to
# redistribution and commercial restrictions. Please see the Metasploit
# Framework web site for more information on licensing and terms of use.
# http://metasploit.com/framework/
##
class Metasploit3 'PSO Proxy v0.91 Stack Buffer Overflow',
'Description' => %q{
This module exploits a buffer overflow in the PSO Proxy v0.91 web server.
If a client sends an excessively long string the stack is overwritten.
},
'Author' => 'Patrick Webster ',
'License' => MSF_LICENSE,
'Version' => '$Revision: 9262 $',
'References' =>
[
[ 'CVE', '2004-0313' ],
[ 'OSVDB', '4028' ],
[ 'URL', 'http://www.milw0rm.co
Exploit-DB
Sun Java System Directory Server 7.0 - 'core_get_proxyauth_dn' Denial of Service
exploitdb·2010-01-10
CVE-2010-0313 Sun Java System Directory Server 7.0 - 'core_get_proxyauth_dn' Denial of Service
Sun Java System Directory Server 7.0 - 'core_get_proxyauth_dn' Denial of Service
---
source: https://www.securityfocus.com/bid/37699/info
Sun Java System Directory Server is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to crash the effected application, denying service to legitimate users.
Directory Server 7.0 is vulnerable; other versions may also be affected.
#!/usr/bin/env python
# sun_dsee7.py
#
# Use this code at your own risk. Never run it against a production system.
#
# THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
# WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
# MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
# ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR AN
No writeups or analysis indexed.
http://intevydis.blogspot.com/2010/01/sun-directory-server-70.htmlhttp://secunia.com/advisories/37978http://securitytracker.com/id?1023431http://www.securityfocus.com/bid/37699http://www.vupen.com/english/advisories/2010/0085https://exchange.xforce.ibmcloud.com/vulnerabilities/55511http://intevydis.blogspot.com/2010/01/sun-directory-server-70.htmlhttp://secunia.com/advisories/37978http://securitytracker.com/id?1023431http://www.securityfocus.com/bid/37699http://www.vupen.com/english/advisories/2010/0085https://exchange.xforce.ibmcloud.com/vulnerabilities/55511
2010-01-14
Published