CVE-2010-3524
published 2010-10-14CVE-2010-3524: Unspecified vulnerability in the PeopleSoft Enterprise SCM - Strategic Sourcing component in Oracle PeopleSoft and JDEdwards Suite 8.9 Bundle #38, 9.0 Bundle…
PriorityP423medium5.5CVSS 2.0
AVNACLAuSCPIPAN
EPSS
1.46%
70.7th percentile
Unspecified vulnerability in the PeopleSoft Enterprise SCM - Strategic Sourcing component in Oracle PeopleSoft and JDEdwards Suite 8.9 Bundle #38, 9.0 Bundle #31, and 9.1 Bundle #6 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | peoplesoft_and_jdedwards_product_suite | — | — |
| oracle | peoplesoft_and_jdedwards_product_suite | — | — |
| oracle | peoplesoft_and_jdedwards_product_suite | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
SIPfoundry sipXphone 2.6.0.27 - CSeq Buffer Overflow (Metasploit)
exploitdb·2010-06-15
CVE-2006-3524 SIPfoundry sipXphone 2.6.0.27 - CSeq Buffer Overflow (Metasploit)
SIPfoundry sipXphone 2.6.0.27 - CSeq Buffer Overflow (Metasploit)
---
##
# $Id: sipxphone_cseq.rb 9525 2010-06-15 07:18:08Z jduck $
##
##
# This file is part of the Metasploit Framework and may be subject to
# redistribution and commercial restrictions. Please see the Metasploit
# Framework web site for more information on licensing and terms of use.
# http://metasploit.com/framework/
##
require 'msf/core'
class Metasploit3 'SIPfoundry sipXphone 2.6.0.27 CSeq Buffer Overflow',
'Description' => %q{
This module exploits a buffer overflow in SIPfoundry's
sipXphone 2.6.0.27. By sending an overly long CSeq value,
a remote attacker could overflow a buffer and execute
arbitrary code on the system with the privileges of
the affected application.
},
'Author' => 'MC',
'Version' => '$Revision: 9
Exploit-DB
AIM Triton 1.0.4 - CSeq Buffer Overflow (Metasploit)
exploitdb·2010-06-15
CVE-2006-3524 AIM Triton 1.0.4 - CSeq Buffer Overflow (Metasploit)
AIM Triton 1.0.4 - CSeq Buffer Overflow (Metasploit)
---
##
# $Id: aim_triton_cseq.rb 9525 2010-06-15 07:18:08Z jduck $
##
##
# This file is part of the Metasploit Framework and may be subject to
# redistribution and commercial restrictions. Please see the Metasploit
# Framework web site for more information on licensing and terms of use.
# http://metasploit.com/framework/
##
require 'msf/core'
class Metasploit3 'AIM Triton 1.0.4 CSeq Buffer Overflow',
'Description' => %q{
This module exploits a buffer overflow in AOL\'s AIM
Triton 1.0.4. By sending an overly long CSeq value,
a remote attacker could overflow a buffer and execute
arbitrary code on the system with the privileges of
the affected application.
},
'Author' => 'MC',
'Version' => '$Revision: 9525 $',
'References' =>
[
['CVE',
Exploit-DB
SIPfoundry sipXezPhone 0.35a - CSeq Field Overflow (Metasploit)
exploitdb·2010-06-15
CVE-2006-3524 SIPfoundry sipXezPhone 0.35a - CSeq Field Overflow (Metasploit)
SIPfoundry sipXezPhone 0.35a - CSeq Field Overflow (Metasploit)
---
##
# $Id: sipxezphone_cseq.rb 9525 2010-06-15 07:18:08Z jduck $
##
##
# This file is part of the Metasploit Framework and may be subject to
# redistribution and commercial restrictions. Please see the Metasploit
# Framework web site for more information on licensing and terms of use.
# http://metasploit.com/framework/
##
require 'msf/core'
class Metasploit3 'SIPfoundry sipXezPhone 0.35a CSeq Field Overflow',
'Description' => %q{
This module exploits a buffer overflow in SIPfoundry's
sipXezPhone version 0.35a. By sending an long CSeq header,
a remote attacker could overflow a buffer and execute
arbitrary code on the system with the privileges of
the affected application.
},
'Author' => 'MC',
'Version' => '$Revision: 95
No writeups or analysis indexed.
2010-10-14
Published