mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-05-28 01:02:55 +00:00
85 lines
2.8 KiB
JSON
85 lines
2.8 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "cert@cert.org",
|
|
"ID": "CVE-2017-3195",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "Service Pack 6",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "Version 11 prior to SP7"
|
|
},
|
|
{
|
|
"version_value": "version 11 SP6 prior to hotfix 590"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name": "Commvault"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Commvault Edge Communication Service (cvd) prior to version 11 SP7 or version 11 SP6 with hotfix 590 is prone to a stack-based buffer overflow vulnerability that could lead to arbitrary code execution with administrative privileges."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "CWE-121: Stack-based Buffer Overflow"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"name": "http://kb.commvault.com/article/SEC0013",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://kb.commvault.com/article/SEC0013"
|
|
},
|
|
{
|
|
"name": "http://redr2e.com/commvault-edge-cve-2017-3195/",
|
|
"refsource": "MISC",
|
|
"url": "http://redr2e.com/commvault-edge-cve-2017-3195/"
|
|
},
|
|
{
|
|
"name": "41823",
|
|
"refsource": "EXPLOIT-DB",
|
|
"url": "https://www.exploit-db.com/exploits/41823/"
|
|
},
|
|
{
|
|
"name": "VU#214283",
|
|
"refsource": "CERT-VN",
|
|
"url": "https://www.kb.cert.org/vuls/id/214283"
|
|
},
|
|
{
|
|
"name": "96941",
|
|
"refsource": "BID",
|
|
"url": "http://www.securityfocus.com/bid/96941"
|
|
}
|
|
]
|
|
}
|
|
} |