Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2009-2548

EPSS 6.66% · P91
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2009-2548

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Format string vulnerability in Armed Assault (aka ArmA) 1.14 and earlier, and 1.16 beta, and Armed Assault II 1.02 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the (1) nickname and (2) datafile fields in a join request, which is not properly handled when logging an error message.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Bistudio Armed Assault出错消息日志导致拒绝服务漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Armed Assault(ArmA)中文译名《武装突袭》,是一个第一人称射击+军事作战模拟类游戏 。 ArmA游戏服务器在处理用户所提交的请求或报文时存在多个错误,可能导致拒绝服务或执行任意代码 。 如果远程攻击者在提交给ArmA服务器的加入游戏请求中的nickname或datafile字段指定了格式串标识符,出错消息日志在记录这些请求时就可能导致拒绝服务或执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2009-2548

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2009-2548

登录查看更多情报信息。

Same Patch Batch · n/a · 2009-07-20 · 23 CVEs total

CVE-2009-2537KDE Konqueror整数越界拒绝服务安全漏洞
CVE-2009-2534RealNetworks Helix Server SETUP命令远程拒绝服务漏洞
CVE-2009-2533Perforce Software Perforce Helix ALM拒绝服务漏洞
CVE-2009-1897Linux kernel 缓冲区错误漏洞
CVE-2009-2544Marcelo Costa FileServer目录遍历漏洞
CVE-2009-2543IBM Proventia引擎多个未知安全漏洞
CVE-2009-2542Netscape整数越界拒绝服务安全漏洞
CVE-2009-2541Sony PLAYSTATION整数越界拒绝服务安全漏洞
CVE-2009-2540Opera整数越界拒绝服务安全漏洞
CVE-2009-2539Aigo P8860整数越界拒绝服务安全漏洞
CVE-2009-2538Symbian OS整数越界拒绝服务安全漏洞
CVE-2009-2545Anelectron Advanced Electron Forum SQL注入漏洞
CVE-2009-2536Microsoft Internet Explorer 整数越界拒绝服务安全漏洞
CVE-2009-2535Mozilla Firefox,SeaMonkey和Thunderbird 整数越界拒绝服务漏洞
CVE-2009-2554Jobline jobline.class.php SQL注入漏洞
CVE-2009-2553Super Simple Blog Script comments.php SQL注入漏洞
CVE-2009-2552Super Simple Blog Script comments.php多个目录遍历漏洞
CVE-2009-2551ScriptsEz Easy Image Downloader 多个跨站脚本漏洞
CVE-2009-2550Ondanera.Net Hamster Audio Player缓冲区溢出漏洞
CVE-2009-2549Bistudio Armed Assault多个远程拒绝服务和代码执行漏洞

Showing top 20 of 23 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2009-2548

No comments yet


Leave a comment