Description
Stack-based buffer overflow in the AntServer Module (AntServer.exe) in BigAnt IM Server 2.50 allows remote attackers to execute arbitrary code via a long GET request to TCP port 6660.
Affected products
- BigAntSoft / bigant_messenger2.50 – 2.50
References
- EXPLOIThttp://www.exploit-db.com/exploits/9673
- MISChttp://www.attrition.org/pipermail/vim/2009-September/002271.html
- EXPLOIThttp://www.exploit-db.com/exploits/9690
- VENDOR_ADVISORYhttp://secunia.com/advisories/36704
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2009/2679
- MISChttp://www.securityfocus.com/bid/36407