CVE-2008-5297
HIGH 7.6EPSS 18.5%
Buffer overflow in No-IP DUC 2.1.7 and earlier allows remote HTTP servers to execute arbitrary code via a crafted response to a DNS update request, related to a missing length check in the GetNextLine function.
- CVSS v2.0
- 7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C - EPSS
- 18.46% chance of exploitation in the next 30 days, 97th percentile
- Published
- 2008-12-01
- Updated
- 2024-08-07