Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2009-2356 (nulllogic_groupware)

BugsAlert Home > CVE-2009-2356 (nulllogic_groupware)
 
 

Multiple stack-based buffer overflows in the pgsqlQuery function in NullLogic Groupware 1.2.7, when PostgreSQL is used, might allow remote attackers to execute arbitrary code via input to the (1) POP3, (2) SMTP, or (3) web component that triggers a long SQL query.




Original Source: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2356

Learn more about CVE-2009-2356 (nulllogic_groupware)
 
Tags: cve-2009-2356 nulllogic groupware

Related Items

      David Humphrey: Defining Open Data

      #374: sourceArea has right margin

      Google Releases Free Web Security Scanner

      Bugtraq: [Tool] sqlmap 0.6.2 released

      Brief: Apple patches QuickTime, iPhone

      Kantan WEB Server Multiple Vulnerabilities

      Gervase Markham: Bugzilla API 0.4 Released

 

Pixel