This script is Copyright (C) 2012-2016 Tenable Network Security, Inc.
The remote Windows host contains an application that is affected by a
remote buffer overflow vulnerability.
According to its version, the instance of WellinTech KingView
installed on the remote Windows host is affected by a remote buffer
overflow vulnerability. A flaw exists inside of 'nettransdll.dll' that
may permit unauthenticated, remote attackers to execute arbitrary code
in the context of the application. 'HistorySrv.exe' listens on port
777. When a specially-crafted request is received requesting service
opcode 0x03, a buffer is allocated based on a size field in the
request. Once the buffer has been created, data from the packet is
copied into the buffer based on yet another size field. By making the
buffer size field smaller than the data size field, a heap overflow
can be accomplished.
See also :
Install the patch referenced in the vendor's advisory.
Risk factor :
Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 7.4
Public Exploit Available : false
Nessus Plugin ID: 59376 ()
Bugtraq ID: 51159
CVE ID: CVE-2011-4536
Upgrade to Nessus Professional today!
Start your free Nessus Cloud trial now!
Begin Free Trial
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.