← Back

CVE-2004-0193

nvd nist
Published: Mar 15, 2004Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Heap-based buffer overflow in the ISS Protocol Analysis Module (PAM), as used in certain versions of RealSecure Network 7.0 and Server Sensor 7.0, Proventia A, G, and M Series, RealSecure Desktop 7.0 and 3.6, RealSecure Guard 3.6, RealSecure Sentry 3.6, BlackICE PC Protection 3.6, and BlackICE Server Protection 3.6, allows remote attackers to execute arbitrary code via an SMB packet containing an authentication request with a long username.

Affected (14)

11 products
Blackice Agent Server
Blackice Pc Protection
Blackice Server Protection
Realsecure Desktop
Realsecure Guard
Realsecure Network
Realsecure Sentry
Realsecure Server Sensor
Proventia A Series Xpu
Proventia G Series Xpu
Proventia M Series Xpu
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.6eca
Version 3.6cbd
Version 3.6cbz
Iss
Version 3.6eca
Version 3.6ecf
Version 7.0ebg
Version 7.0epk
Version 3.6ecb
Version 7.0 xpu_20.15
Version 3.6ecf
Version 7.0 xpu20.16
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Version 20.15
Version 22.3
Version 1.30

References (18)

Source: cve@mitre.org
PatchThird Party AdvisoryUS Government Resource
Source: cve@mitre.org
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.