Vulnerability Details CVE-2015-7854
Buffer overflow in the password management functionality in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted key file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.033
EPSS Ranking 86.5%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2015-7854
-
cpe:2.3:a:netapp:oncommand_balance:-
-
cpe:2.3:a:netapp:oncommand_performance_manager:-
-
cpe:2.3:a:netapp:oncommand_unified_manager:-
-
-
-
-
-
-
-
Ntp
»
Ntp
»
Version: 4.2.7p444
cpe:2.3:a:ntp:ntp:4.2.7p444
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:o:netapp:clustered_data_ontap:-
-
cpe:2.3:o:netapp:data_ontap:-