CVE-2008-4383

Stack-based buffer overflow in the Agranet-Emweb embedded management web server in Alcatel OmniSwitch OS7000, OS6600, OS6800, OS6850, and OS9000 Series devices with AoS 5.1 before 5.1.6.463.R02, 5.4 before 5.4.1.429.R01, 6.1.3 before 6.1.3.965.R01, 6.1.5 before 6.1.5.595.R01, and 6.3 before 6.3.1.966.R01 allows remote attackers to execute arbitrary code via a long Session cookie.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*
cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*
cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*
cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*
cpe:2.3:o:alcatel:aos:*:*:*:*:*:*:*:*
OR cpe:2.3:h:alcatel-lucent:omniswitch:os6600:*:*:*:*:*:*:*
cpe:2.3:h:alcatel-lucent:omniswitch:os6800:*:*:*:*:*:*:*
cpe:2.3:h:alcatel-lucent:omniswitch:os6850:*:*:*:*:*:*:*
cpe:2.3:h:alcatel-lucent:omniswitch:os7000:*:*:*:*:*:*:*
cpe:2.3:h:alcatel-lucent:omniswitch:os9000:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-10-03 22:22

Updated : 2023-12-10 10:51


NVD link : CVE-2008-4383

Mitre link : CVE-2008-4383

CVE.ORG link : CVE-2008-4383


JSON object : View

Products Affected

alcatel-lucent

  • omniswitch

alcatel

  • aos
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer