CVE-2007-2514: Buffer Overflow
Stack-based buffer overflow in XferWan.exe as used in multiple products including (1) Symantec Discovery 6.5, (2) Numara Asset Manager 8.0, and (3) Centennial UK Ltd Discovery 2006 Feature Pack, allows remote attackers to execute arbitrary code via a long request. NOTE: this might be a reservation duplicate of CVE-2007-1173.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2514?
CVE-2007-2514 has a high severity rating due to its potential for remote code execution.
What software is affected by CVE-2007-2514?
CVE-2007-2514 affects multiple products including Symantec Discovery 6.5, Numara Asset Manager 8.0, and Centennial Discovery 2006 Feature Pack.
How do I fix CVE-2007-2514?
To fix CVE-2007-2514, update the affected software to the latest version provided by the vendor.
How can CVE-2007-2514 be exploited?
CVE-2007-2514 can be exploited by a remote attacker sending a specially crafted long request to the vulnerable application.
Are there any workarounds for CVE-2007-2514?
As a workaround for CVE-2007-2514, restrict access to the affected software or monitor network traffic for suspicious requests.