Stack-based buffer overflow in the Java_com_ibm_es_oss_CryptionNative_ESEncrypt function in /opt/IBM/es/lib/libffq.cryptionjni.so in the login form in the administration interface in IBM OmniFind Enterprise Edition before 8.5 FP6 allows remote attackers to execute arbitrary code via a long password.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2010-11-12 14:00
Updated : 2018-10-10 13:05
NVD link : CVE-2010-3894
Mitre link : CVE-2010-3894
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
ibm
- omnifind