PoC Index

CVE-2008-5297

HIGH 7.6EPSS 18.5%

Buffer overflow in No-IP DUC 2.1.7 and earlier allows remote HTTP servers to execute arbitrary code via a crafted response to a DNS update request, related to a missing length check in the GetNextLine function.

CVSS v2.0
7.6 HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
EPSS
18.46% chance of exploitation in the next 30 days, 97th percentile
Published
2008-12-01
Updated
2024-08-07

ExploitDB entries (1)

References

Related