First published: Tue Jan 09 2007(Updated: )
Stack-based buffer overflow in the CSAdmin service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before 4.1 allows remote attackers to execute arbitrary code via a crafted HTTP GET request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Secure Access Control Server | <=4.0.1 | |
<=4.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0105 has a high severity rating due to the potential for remote code execution.
The recommended fix for CVE-2007-0105 is to upgrade to Cisco Secure Access Control Server version 4.1 or later.
CVE-2007-0105 affects Cisco Secure Access Control Server versions prior to 4.1.
Yes, CVE-2007-0105 can be exploited remotely through crafted HTTP GET requests.
CVE-2007-0105 is a stack-based buffer overflow vulnerability.