// For flags

CVE-2008-0152

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

SLnet.exe in SeattleLab SLNet RF Telnet Server 4.1.1.3758 and earlier allows user-assisted remote attackers to cause a denial of service (crash) via unspecified telnet options, which triggers a NULL pointer dereference. NOTE: the crash is not user-assisted when the server is running in debug mode.

En el archivo SLnet.exe en SeattleLab SLNet RF Telnet Server versión 4.1.1.3758 y anteriores, permite a atacantes remotos asistidos por el usuario causar una denegación de servicio (bloqueo de aplicación) por medio de opciones telnet no especificadas, lo que desencadena una desreferencia del puntero NULL. NOTA: el bloqueo no es asistido por el usuario cuando el servidor es ejecutado en modo de depuración.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-01-08 CVE Reserved
  • 2008-01-09 CVE Published
  • 2024-08-07 CVE Updated
  • 2024-10-05 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Seattle Lab Software
Search vendor "Seattle Lab Software"
Slnet Rf Telnet Server
Search vendor "Seattle Lab Software" for product "Slnet Rf Telnet Server"
<= 4.1.1.3758
Search vendor "Seattle Lab Software" for product "Slnet Rf Telnet Server" and version " <= 4.1.1.3758"
-
Affected