CVE-2009-3861

Stack-based buffer overflow in SafeNet SoftRemote 10.8.5 (Build 2) and 10.3.5 (Build 6), and possibly other versions before 10.8.9, allows local users to execute arbitrary code via a long string in a (1) TREENAME or (2) GROUPNAME Policy file (spd).
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.9 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 90%
VendorProductVersion
safenet-incsoftremote
𝑥
≤ 10.8.8
safenet-incsoftremote
1.7.1
safenet-incsoftremote
1.7.2
safenet-incsoftremote
1.7.7
safenet-incsoftremote
1.8.1
safenet-incsoftremote
1.9.0
safenet-incsoftremote
10.3.5
safenet-incsoftremote
10.7.7
safenet-incsoftremote
10.8.0
safenet-incsoftremote
10.8.1
safenet-incsoftremote
10.8.2
safenet-incsoftremote
10.8.3
safenet-incsoftremote
10.8.4
safenet-incsoftremote
10.8.5
safenet-incsoftremote
10.8.6
safenet-incsoftremote
10.8.7
𝑥
= Vulnerable software versions