CVE-2017-6506
10.03.2017, 10:59
In Azure Data Expert Ultimate 2.2.16, the SMTP verification function suffers from a buffer overflow vulnerability, leading to remote code execution. The attack vector is a crafted SMTP daemon that sends a long 220 (aka "Service ready") string.Enginsight
Vendor | Product | Version |
---|---|---|
azure_dex | data_expert_ultimate | 2.2.16 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References