This application requires Javascript for optimal performance.

IDEAL.Administration.IPJ.File.Buffer.Overflow

Release Date

Dec 29, 2009

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt to exploit a remote code execution vulnerability in IDEAL Administration.

The vulnerability is caused by an error when handling malformed IPJ file(.ipj). It can be exploited via a crafted IPJ file, leading to remote code execution.

Affected Products

IDEAL Administration 2009 (v9.7)

Recommended Actions

Currently we are not aware of any vendor supplied patch for this issue.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-4265

Reference/s

http://www.securityfocus.com/bid/39729 (BugTraq)
http://www.exploit-db.com/exploits/10319

Reference: VID-18032