// For flags

CVE-2011-5033

CSF Firewall - Buffer Overflow (PoC)

Severity Score

4.4
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

2
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Stack-based buffer overflow in CFS.c in ConfigServer Security & Firewall (CSF) before 5.43, when running on a DirectAdmin server, allows local users to cause a denial of service (crash) via a long string in an admin.list file.

Un desbordamiento de búfer basado en la pila
en CFS.c en ConfigServer Seguridad y Firewall (CSF) anterior a v5,43, cuando se ejecuta en un servidor de DirectAdmin, permite a usuarios locales provocar una denegación de servicio (caída) a través de una larga cadena en un archivo admin.list.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2011-12-09 First Exploit
  • 2011-12-29 CVE Reserved
  • 2011-12-29 CVE Published
  • 2024-08-07 CVE Updated
  • 2024-10-07 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
<= 5.42
Search vendor "Configserver" for product "Configserver Security Firewall" and version " <= 5.42"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.00
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.00"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.01
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.01"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.02
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.02"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.03
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.03"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.04
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.04"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.05
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.05"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.06
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.06"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.07
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.07"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.08
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.08"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.09
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.09"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.10
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.10"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.11
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.11"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.12
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.12"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.13
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.13"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.14
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.14"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.15
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.15"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.16
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.16"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.17
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.17"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.18
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.18"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.19
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.19"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.20
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.20"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.21
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.21"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.22
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.22"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.30
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.30"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.31
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.31"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.32
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.32"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.33
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.33"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.34
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.34"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.35
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.35"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.36
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.36"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.37
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.37"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.38
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.38"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.39
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.39"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.40
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.40"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe
Configserver
Search vendor "Configserver"
Configserver Security Firewall
Search vendor "Configserver" for product "Configserver Security Firewall"
5.41
Search vendor "Configserver" for product "Configserver Security Firewall" and version "5.41"
-
Affected
in Directadmin
Search vendor "Directadmin"
Directadmin Server
Search vendor "Directadmin" for product "Directadmin Server"
*-
Safe