2 results (0.003 seconds)

CVSS: 8.8EPSS: 8%CPEs: 2EXPL: 0

12 Aug 2014 — Integer overflow in the StartEpa method in the nsepacom ActiveX control (nsepa.exe) in Citrix Access Gateway Enterprise Edition Plug-in for Windows 9.x before 9.3-57.5 and 10.0 before 10.0-69.4 allows remote attackers to execute arbitrary code via a crafted Content-Length HTTP header, which triggers a heap-based buffer overflow. Desbordamiento de enteros en el método StartEpa en el control nsepacom ActiveX (nsepa.exe) en Citrix Access Gateway Enterprise Edition Plug-in para Windows 9.x anterior a 9.3-57.5 y... • http://secunia.com/advisories/45299 • CWE-189: Numeric Errors •

CVSS: 9.8EPSS: 18%CPEs: 5EXPL: 0

18 Jun 2014 — Heap-based buffer overflow in the StartEpa method in the nsepacom ActiveX control (nsepa.exe) in Citrix Access Gateway Enterprise Edition Plug-in for Windows 9.x before 9.3-57.5 and 10.0 before 10.0-69.4 allows remote attackers to execute arbitrary code via a long CSEC HTTP response header. Desbordamiento de buffer basado en memoria dinámica en el método StartEpa en el control nsepacom ActiveX (nsepa.exe) en Citrix Access Gateway Enterprise Edition Plug-in para Windows 9.x anterior a 9.3-57.5 y 10.0 anterio... • http://archives.neohapsis.com/archives/bugtraq/2012-08/0009.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •