Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2002-1643

EPSS 80.55% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2002-1643

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Multiple buffer overflows in RealNetworks Helix Universal Server 9.0 (9.0.2.768) allow remote attackers to execute arbitrary code via (1) a long Transport field in a SETUP RTSP request, (2) a DESCRIBE RTSP request with a long URL argument, or (3) two simultaneous HTTP GET requests with long arguments.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Real Networks Helix Universal Server RTSP transport字段远程缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Helix Universal Server是一款由RealNetWorks开发和维护的多类型媒体服务器。 Helix Universal Server由于对RTSP请求的'transport'字段数据缺少正确边界缓冲区检查,远程攻击者可以利用这个漏洞对服务程序进行拒绝服务攻击,可能以服务器进程权限在系统上执行任意指令。 攻击者提供包含超长字符的Transport字段的SETUP RSTP请求给Helix服务器(默认监听端口为TCP 554),就会触发缓冲区溢出,在Windows系统下,Helix服务器以
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2002-1643

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2002-1643

Please Login to view more intelligence information

Same Patch Batch · n/a · 2005-03-28 · 26 CVEs total

CVE-2002-1648SquirrelMail对恶意HTML格式邮件处理的漏洞
CVE-2005-0469多个Telnet客户端slc_add_reply() 缓冲区溢出漏洞
CVE-2005-0468Telnet客户端env_opt_add() 缓冲区溢出漏洞
CVE-2004-1773GNU Sharutils多个缓冲区溢出漏洞
CVE-2004-1772GNU Sharutils shar命令行解析缓冲区溢出漏洞
CVE-2002-1656X-News不安全用户数据库权限漏洞
CVE-2002-1655Netscape Enterprise Server Web Publisher拒绝服务攻击漏洞
CVE-2002-1654Netscape企业Web服务器蛮力授权攻击漏洞
CVE-2002-1653Cryptcat加密连接弱点
CVE-2002-1652CGIEmail远程缓冲区溢出漏洞
CVE-2002-1651Verity Search97错误页面跨站脚本漏洞
CVE-2002-1650SquirrelMail拼写检查器漏洞
CVE-2002-1649SquirrelMail对恶意HTML格式邮件处理的漏洞
CVE-2002-1634Netware下的Netscape Enterprise Web服务器信息泄露漏洞
CVE-2002-1647Slash Slashcode密码泄露漏洞
CVE-2002-1646SSH Communications SSH AllowedAuthentications配置存在漏洞
CVE-2002-1645SSH Communications Secure Shell Windows客户端URLCatcher缓冲区溢出漏洞
CVE-2002-1644SSH Communications SSH Server权限提升漏洞
CVE-2002-1642PostgreSQL VACUUM命令数据丢失漏洞
CVE-2002-1641Oracle Web Cache远程缓冲区溢出漏洞

Showing top 20 of 26 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2002-1643

No comments yet


Leave a comment