IBM Merge Healthcare eFilm Workstation License Server Buffer Overflow

January 25, 2024 No Comments
EIP-96bd11d3 A buffer overflow exists in IBM Merge Healthcare eFilm Workstation license server. A remote, unauthenticated attacker can exploit this vulnerability to achieve remote code execution. Vulnerability Identifier Exodus Intelligence: EIP-96bd11d3 MITRE: CVE-2024-23621 Vulnerability Metrics CVSSv2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C CVSSv2 Score: 10.0 Vendor References
Read More »

IBM Merge Healthcare eFilm Workstation License Server CopySLS_Request3 Buffer Overflow

January 25, 2024 No Comments
EIP-21c968fc A stack-based buffer overflow exists in IBM Merge Healthcare eFilm Workstation license server. A remote, unauthenticated attacker can exploit this vulnerability to achieve remote code execution with SYSTEM privileges. Vulnerability Identifier Exodus Intelligence: EIP-21c968fc MITRE: CVE-2024-23622 Vulnerability Metrics CVSSv2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C CVSSv2 Score: 10.0
Read More »

IBM Merge Healthcare eFilm Workstation SYSTEM Privilege Escalation

January 25, 2024 No Comments
EIP-ac73ca7c An improper privilege management vulnerability exists in IBM Merge Healthcare eFilm Workstation. A local, authenticated attacker can exploit this vulnerability to escalate privileges to SYSTEM. Vulnerability Identifier Exodus Intelligence: EIP-ac73ca7c MITRE: CVE-2024-23620 Vulnerability Metrics CVSSv2 Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C CVSSv2 Score: 6.8 Vendor References
Read More »

Symantec Deployment Solution axengine.exe Buffer Overflow Remote Code Execution

January 25, 2024 No Comments
EIP-6cce200a A buffer overflow vulnerability exists in Symantec Deployment Solution version 7.9. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution as SYSTEM. Vulnerability Identifier Exodus Intelligence: EIP-6cce200a MITRE: CVE-2024-23613 Vulnerability Metrics CVSSv2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C CVSSv2 Score: 9.3 Vendor
Read More »

Symantec Messaging Gateway libdec2lha.so Stack Buffer Overflow Remote Code Execution

January 25, 2024 No Comments
EIP-a9e61262 A stack buffer overflow exists in Symantec Messaging Gateway in versions 9.5 and before. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution. Vulnerability Identifier Exodus Intelligence: EIP-a9e61262 MITRE: CVE-2024-23615 Vulnerability Metrics CVSSv2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C CVSSv2 Score: 10.0
Read More »

Symantec Server Management Suite axengine.exe Buffer Overflow Remote Code Execution

January 25, 2024 No Comments
EIP-91da78e7 A buffer overflow vulnerability exists in Symantec Server Management Suite version 7.9 and before. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution as SYSTEM. Vulnerability Identifier Exodus Intelligence: EIP-91da78e7 MITRE: CVE-2024-23616 Vulnerability Metrics CVSSv2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C CVSSv2
Read More »

Symantec Messaging Gateway wp6sr.so Stack Buffer Overflow Remote Code Execution

January 25, 2024 No Comments
EIP-1e5e28b3 A stack buffer overflow exists in Symantec Messaging Gateway in versions 9.5 and before. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution. Vulnerability Identifier Exodus Intelligence: EIP-1e5e28b3 MITRE: CVE-2024-23614 Vulnerability Metrics CVSSv2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:N CVSSv2 Score: 9.4
Read More »

Delta Electronics Delta Industrial Automation DOPSoft DPS File wTextLen Buffer Overflow Remote Code Execution

January 18, 2024 No Comments
EIP-29f0f63c A buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft. A remote, unauthenticated attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve remote code execution. Vulnerability Identifier Exodus Intelligence: EIP-29f0f63c MITRE: CVE-2023-43818 Vulnerability
Read More »