Vulnerability Description
Sysax Multi Server versions prior to 5.55 contains a stack-based buffer overflow in its SSH service. When a remote attacker supplies an overly long username during authentication, the server copies the input to a fixed-size stack buffer without proper bounds checking. This allows remote code execution under the context of the service.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sysax | Multi Server | < 5.55 |
Related Weaknesses (CWE)
References
- https://advisories.checkpoint.com/defense/advisories/public/2012/cpai-23-sepc.htThird Party Advisory
- https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/expExploitThird Party Advisory
- https://web.archive.org/web/20120302203344/http://www.pwnag3.com/2012/02/sysax-mExploitThird Party Advisory
- https://www.exploit-db.com/exploits/18535ExploitVDB Entry
- https://www.exploit-db.com/exploits/18557ExploitVDB Entry
- https://www.sysax.com/Product
- https://www.vulncheck.com/advisories/sysax-multi-server-ssh-username-buffer-overThird Party Advisory
- https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/expExploitThird Party Advisory
FAQ
What is CVE-2012-10060?
CVE-2012-10060 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Sysax Multi Server versions prior to 5.55 contains a stack-based buffer overflow in its SSH service. When a remote attacker supplies an overly long username during authentication, the server copies th...
How severe is CVE-2012-10060?
CVE-2012-10060 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2012-10060?
Check the references section above for vendor advisories and patch information. Affected products include: Sysax Multi Server.