PoC Index

CVE-2009-0849

HIGH 7.5EPSS 16.5%

Stack-based buffer overflow in the DtbClsLogin function in NovaStor NovaNET 12 allows remote attackers to (1) execute arbitrary code on Linux platforms via a long username field during backup domain authentication, related to libnnlindtb.so; or (2) cause a denial of service (daemon crash) on Windows platforms via a long username field during backup domain authentication, related to nnwindtb.dll. NOTE: some of these details are obtained from third party information.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
16.55% chance of exploitation in the next 30 days, 97th percentile
Published
2009-03-09
Updated
2024-08-07

ExploitDB entries (1)

References

Related