Vulnerabilities
Vulnerable Software
Ibm:  >> Omnifind  >> 6.1  Security Vulnerabilities
Stack-based buffer overflow in the Java_com_ibm_es_oss_CryptionNative_ESEncrypt function in /opt/IBM/es/lib/libffq.cryptionjni.so in the login form in the administration interface in IBM OmniFind Enterprise Edition before 8.5 FP6 allows remote attackers to execute arbitrary code via a long password.
CVSS Score
9.3
EPSS Score
0.13
Published
2010-11-12
Untrusted search path vulnerability in estaskwrapper in IBM OmniFind Enterprise Edition before 9.1 allows local users to gain privileges via an ES_LIBRARY_PATH environment variable and a modified PATH environment variable, which is used during execution of the estasklight program, a different vulnerability than CVE-2010-3895.
CVSS Score
6.9
EPSS Score
0.004
Published
2010-11-12


Contact Us

Shodan ® - All rights reserved