First published: Wed Oct 05 2005(Updated: )
Format string vulnerability in the Log_Flush function in Weex 2.6.1.5, 2.6.1, and possibly other versions allows remote FTP servers to execute arbitrary code via format strings in filenames.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wazuh | =2.6.1 | |
Wazuh | =2.6.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3150 is classified as a high severity vulnerability due to its potential to allow remote code execution.
To fix CVE-2005-3150, you should upgrade Weex to version 2.6.1.6 or later to mitigate the vulnerability.
CVE-2005-3150 affects Weex versions 2.6.1 and 2.6.1.5.
CVE-2005-3150 is a format string vulnerability that allows remote FTP servers to execute arbitrary code.
Yes, CVE-2005-3150 can be remotely exploited if an attacker manipulates the format strings in filenames.