Summary
Detail | |||
---|---|---|---|
Vendor | Iss | First view | 2004-03-15 |
Product | Proventia G Series Xpu | Last view | 2007-05-15 |
Version | Type | ||
Update | |||
Edition | |||
Language | |||
Sofware Edition | |||
Target Software | |||
Target Hardware | |||
Other |
Activity : Overall
COMMON PLATFORM ENUMERATION: Repartition per Version
Related : CVE
Date | Alert | Description | |
---|---|---|---|
7.8 | 2007-05-15 | CVE-2007-2690 | Multiple IBM ISS Proventia Series products, including the A, G, and M series, do not properly handle certain full-width and half-width Unicode character encodings, which might allow remote attackers to evade detection of HTTP traffic. |
5 | 2006-07-27 | CVE-2006-3840 | The SMB Mailslot parsing functionality in PAM in multiple ISS products with XPU (24.39/1.78/epj/x.x.x.1780), including Proventia A, G, M, Server, and Desktop, BlackICE PC and Server Protection 3.6, and RealSecure 7.0, allows remote attackers to cause a denial of service (infinite loop) via a crafted SMB packet that is not properly handled by the SMB_Mailslot_Heap_Overflow decode. |
7.5 | 2004-04-15 | CVE-2004-0362 | Multiple stack-based buffer overflows in the ICQ parsing routines of the ISS Protocol Analysis Module (PAM) component, as used in various RealSecure, Proventia, and BlackICE products, allow remote attackers to execute arbitrary code via a SRV_MULTI response containing a SRV_USER_ONLINE response packet and a SRV_META_USER response packet with long (1) nickname, (2) firstname, (3) lastname, or (4) email address fields, as exploited by the Witty worm. |
7.5 | 2004-03-15 | CVE-2004-0193 | Heap-based buffer overflow in the ISS Protocol Analysis Module (PAM), as used in certain versions of RealSecure Network 7.0 and Server Sensor 7.0, Proventia A, G, and M Series, RealSecure Desktop 7.0 and 3.6, RealSecure Guard 3.6, RealSecure Sentry 3.6, BlackICE PC Protection 3.6, and BlackICE Server Protection 3.6, allows remote attackers to execute arbitrary code via an SMB packet containing an authentication request with a long username. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
100% (1) | CWE-399 | Resource Management Errors |
Open Source Vulnerability Database (OSVDB)
id | Description |
---|---|
58659 | IBM ISS Proventia Multiple Products Unicode Character Encoding Handling HTTP ... |
27550 | RealSecure/BlackICE MailSlot Overflow Detection Crafted Packet Remote DoS |
4702 | RealSecure/BlackICE PAM Module SMB Packet Overflow |
4355 | ISS Multiple Products PAM Component ICQ Protocol Parsing Overflow |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | SMB Session Setup unicode andx username overflow attempt RuleID : 5684 - Type : NETBIOS - Revision : 6 |
2014-01-10 | SMB Session Setup andx username overflow attempt RuleID : 5683 - Type : NETBIOS - Revision : 6 |
2014-01-10 | SMB Session Setup unicode andx username overflow attempt RuleID : 5682 - Type : NETBIOS - Revision : 9 |
2014-01-10 | SMB Session Setup unicode username overflow attempt RuleID : 5681 - Type : NETBIOS - Revision : 6 |
2014-01-10 | SMB Session Setup username overflow attempt RuleID : 5680 - Type : NETBIOS - Revision : 6 |
2014-01-10 | SMB-DS Session Setup unicode username overflow attempt RuleID : 5679 - Type : NETBIOS - Revision : 4 |
2014-01-10 | SMB-DS Session Setup username overflow attempt RuleID : 5678 - Type : NETBIOS - Revision : 5 |
2014-01-10 | SMB Session Setup username overflow attempt RuleID : 5677 - Type : NETBIOS - Revision : 9 |
2019-09-24 | BlackIce ISS ICQ parser buffer overflow attempt RuleID : 51237 - Type : SERVER-OTHER - Revision : 1 |
2014-01-10 | ICQ SRV_MULTI/SRV_META_USER overflow attempt - ISS Witty Worm RuleID : 2446-community - Type : SERVER-OTHER - Revision : 16 |
2014-01-10 | ICQ SRV_MULTI/SRV_META_USER overflow attempt - ISS Witty Worm RuleID : 2446 - Type : SERVER-OTHER - Revision : 16 |
2014-01-10 | SMB-DS Session Setup unicode andx username overflow attempt RuleID : 2404-community - Type : NETBIOS - Revision : 11 |
2014-01-10 | SMB-DS Session Setup unicode andx username overflow attempt RuleID : 2404 - Type : NETBIOS - Revision : 11 |
2014-01-10 | SMB Session Setup unicode username overflow attempt RuleID : 2403-community - Type : NETBIOS - Revision : 14 |
2014-01-10 | SMB Session Setup unicode username overflow attempt RuleID : 2403 - Type : NETBIOS - Revision : 14 |
2014-01-10 | SMB-DS Session Setup andx username overflow attempt RuleID : 2402-community - Type : NETBIOS - Revision : 10 |
2014-01-10 | SMB-DS Session Setup andx username overflow attempt RuleID : 2402 - Type : NETBIOS - Revision : 10 |
2014-01-10 | SMB Session Setup andx username overflow attempt RuleID : 2401-community - Type : NETBIOS - Revision : 13 |
2014-01-10 | SMB Session Setup andx username overflow attempt RuleID : 2401 - Type : NETBIOS - Revision : 13 |
2014-01-10 | ICQ SRV_MULTI/SRV_META_USER overflow attempt RuleID : 15967 - Type : SERVER-OTHER - Revision : 5 |
Nessus® Vulnerability Scanner
id | Description |
---|---|
2004-03-19 | Name: The firewall running on the remote host has multiple buffer overflow vulnerab... File: blackice_version_checker.nasl - Type: ACT_GATHER_INFO |