CVE-2005-4734

Stack-based buffer overflow in IISWebAgentIF.dll in RSA Authentication Agent for Web (aka SecurID Web Agent) 5.2 and 5.3 for IIS allows remote attackers to execute arbitrary code via a long url parameter in the Redirect method.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rsa:authentication_agent_for_web:5.2:*:*:*:*:*:*:*
cpe:2.3:a:rsa:authentication_agent_for_web:5.3:*:*:*:*:*:*:*

History

21 Nov 2024, 00:05

Type Values Removed Values Added
References () http://secunia.com/advisories/17281 - Exploit, Vendor Advisory () http://secunia.com/advisories/17281 - Exploit, Vendor Advisory
References () http://www.metasploit.com/projects/Framework/exploits.html#rsa_iiswebagent_redirect - Exploit () http://www.metasploit.com/projects/Framework/exploits.html#rsa_iiswebagent_redirect - Exploit
References () http://www.osvdb.org/20151 - Exploit () http://www.osvdb.org/20151 - Exploit
References () http://www.securityfocus.com/bid/26424 - () http://www.securityfocus.com/bid/26424 -
References () https://knowledge.rsasecurity.com/dlcpages/rsa_securid/securid_dlc_aaweb.asp - () https://knowledge.rsasecurity.com/dlcpages/rsa_securid/securid_dlc_aaweb.asp -

Information

Published : 2005-12-31 05:00

Updated : 2024-11-21 00:05


NVD link : CVE-2005-4734

Mitre link : CVE-2005-4734

CVE.ORG link : CVE-2005-4734


JSON object : View

Products Affected

rsa

  • authentication_agent_for_web