CVE-2007-2343: Buffer Overflow
Stack-based buffer overflow in the TFTPD component in Enterasys NetSight Console 2.1 and NetSight Inventory Manager 2.1, and possibly earlier, allows remote attackers to execute arbitrary code via crafted request packets that contain long file names.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2343?
CVE-2007-2343 is classified as a high severity vulnerability due to the potential for remote code execution.
How do I fix CVE-2007-2343?
To fix CVE-2007-2343, you should update the affected Enterasys NetSight Console and NetSight Inventory Manager to the latest available versions that address this vulnerability.
What systems are affected by CVE-2007-2343?
CVE-2007-2343 affects Enterasys NetSight Console version 2.1 and NetSight Inventory Manager version 2.1, and possibly earlier versions.
Can CVE-2007-2343 be exploited remotely?
Yes, CVE-2007-2343 can be exploited remotely by attackers through specially crafted request packets with long file names.
What kind of attacks are possible due to CVE-2007-2343?
CVE-2007-2343 allows remote attackers to execute arbitrary code, potentially compromising the affected systems.