CVE-2014-2994
critical
CVSS v3
—
CVSS v2
10.0
VIR risk
10.0
Description
Stack-based buffer overflow in Acunetix Web Vulnerability Scanner (WVS) 8 build 20120704 allows remote attackers to execute arbitrary code via an HTML file containing an IMG element with a long URL (src attribute).
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — http://www.acunetix.com/blog/news/misleading-reports-0-day-acunetix-wvs/
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| acunetix | web_vulnerability_scanner | 8 | |
References
- http://an7isec.blogspot.co.il/2014/04/pown-noobs-acunetix-0day.html
- http://osandamalith.wordpress.com/2014/04/24/pwning-script-kiddies-acunetix-buffer-overflow/
- http://packetstormsecurity.com/files/126306/Acunetix-8-Stack-Buffer-Overflow.html
- http://packetstormsecurity.com/files/126307/Acunetix-8-Scanner-Buffer-Overflow.html
- http://www.acunetix.com/blog/news/misleading-reports-0-day-acunetix-wvs/
- http://www.exploit-db.com/exploits/32997
- https://www.youtube.com/watch?v=RHaMx8K1GeM
- http://an7isec.blogspot.co.il/2014/04/pown-noobs-acunetix-0day.html
- http://osandamalith.wordpress.com/2014/04/24/pwning-script-kiddies-acunetix-buffer-overflow/
- http://packetstormsecurity.com/files/126306/Acunetix-8-Stack-Buffer-Overflow.html
- http://packetstormsecurity.com/files/126307/Acunetix-8-Scanner-Buffer-Overflow.html
- http://www.acunetix.com/blog/news/misleading-reports-0-day-acunetix-wvs/
- http://www.exploit-db.com/exploits/32997
- https://www.youtube.com/watch?v=RHaMx8K1GeM
CWEs
CWE-119
Verify integrity in audit chain (admin only). AS-IS.