← Back to CVEs
CVE-2019-3955
N/ADescription
Dameware Remote Mini Control version 12.1.0.34 and prior contains a unauthenticated remote heap overflow due to the server not properly validating RsaPubKeyLen during key negotiation. An unauthenticated remote attacker can cause a heap buffer overflow by specifying a large RsaPubKeyLen, which could cause a denial of service.
CVE Details
CVSS v3.1 ScoreN/A
Published6/7/2019
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0
Affected Products
dameware:remote_mini_control
Weaknesses (CWE)
CWE-787
References
https://www.tenable.com/security/research/tra-2019-26(vulnreport@tenable.com)
https://www.tenable.com/security/research/tra-2019-26(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.