Required CVE Record Information
Description
Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows remote attackers to execute arbitrary code via the Error or Notice parameters.
References 4 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- iss.net: aolserver-dbproxy-format-string(8860) vdb-entryx_transferred
- archives.neohapsis.com: 20020416 [CERT-intexxia] AOLServer DB Proxy Daemon Format String Vulnerability mailing-listx_transferred
- securityfocus.com: 4535 vdb-entryx_transferred
- http://sourceforge.net/tracker/index.php?func=detail&aid=533141&group_id=3152&atid=303152 x_transferred