First published: Wed Mar 03 2010(Updated: )
Stack-based buffer overflow in the AntServer Module (AntServer.exe) in BigAnt IM Server 2.50 allows remote attackers to execute arbitrary code via a long GET request to TCP port 6660.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bigantsoft Bigant Messenger | =2.50 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4660 has a high severity rating due to its potential to allow remote code execution.
To mitigate CVE-2009-4660, upgrade to a fixed version of BigAnt IM Server that resolves the buffer overflow vulnerability.
CVE-2009-4660 specifically affects BigAnt IM Server version 2.50.
Yes, CVE-2009-4660 can be exploited remotely by sending a specially crafted long GET request.
Exploitation of CVE-2009-4660 could lead to unauthorized remote code execution, compromising the affected server.