Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-0989

Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code via (1) a long FTP URL that is not properly handled by the xmlNanoFTPScanURL function, (2) a long proxy URL containing FTP data that is not properly handled by the xmlNanoFTPScanProxy function, and other overflows related to manipulation of DNS length values, including (3) xmlNanoFTPConnect, (4) xmlNanoHTTPConnectHost, and (5) xmlNanoHTTPConnectHost.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.307
EPSS Ranking 96.4%
CVSS Severity
CVSS v2 Score 10.0
References
Products affected by CVE-2004-0989


Contact Us

Shodan ® - All rights reserved