Vulnerability Description
Buffer overflows in Raytheon SilentRunner allow remote attackers to (1) cause a denial of service in the collector (cle.exe) component of SilentRunner 2.0 via traffic containing long passwords, or (2) execute arbitrary commands via long HTTP queries in the Knowledge Browser component in SilentRunner 2.0 and 2.0.1. NOTE: It is highly likely that this candidate will be split into multiple candidates.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Raytheon | Silentrunner | 2.0 |
References
- http://xforce.iss.net/alerts/advise91.phpVendor Advisory
- http://xforce.iss.net/alerts/advise91.phpVendor Advisory
FAQ
What is CVE-2001-0636?
CVE-2001-0636 is a vulnerability with a CVSS score of 7.5 (HIGH). Buffer overflows in Raytheon SilentRunner allow remote attackers to (1) cause a denial of service in the collector (cle.exe) component of SilentRunner 2.0 via traffic containing long passwords, or (2)...
How severe is CVE-2001-0636?
CVE-2001-0636 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0636?
Check the references section above for vendor advisories and patch information. Affected products include: Raytheon Silentrunner.