First published: Fri Oct 03 2008(Updated: )
Stack-based buffer overflow in the Agranet-Emweb embedded management web server in Alcatel OmniSwitch OS7000, OS6600, OS6800, OS6850, and OS9000 Series devices with AoS 5.1 before 5.1.6.463.R02, 5.4 before 5.4.1.429.R01, 6.1.3 before 6.1.3.965.R01, 6.1.5 before 6.1.5.595.R01, and 6.3 before 6.3.1.966.R01 allows remote attackers to execute arbitrary code via a long Session cookie.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Alcatel Aos | >=5.1<5.1.6.463.r02 | |
Alcatel Aos | >=5.4<5.4.1.429.r01 | |
Alcatel Aos | >=6.1.3<6.1.3.965.r01 | |
Alcatel Aos | >=6.1.5<6.1.5.595.r01 | |
Alcatel Aos | >=6.3<6.3.1.966.r01 | |
Alcatel-lucent Omniswitch | =os6600 | |
Alcatel-lucent Omniswitch | =os6800 | |
Alcatel-lucent Omniswitch | =os6850 | |
Alcatel-lucent Omniswitch | =os7000 | |
Alcatel-lucent Omniswitch | =os9000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.