Citrix EdgeSight Load Tester Buffer Overflow
Critical Nessus Plugin ID 55927
SynopsisIt is possible to execute code on the remote server using a stack overflow vulnerability in Citrix EdgeSight Load Tester.
DescriptionA stack overflow vulnerability exists in the Citrix EdgeSight Load Tester software installed on the remote host.
By sending a specially crafted message to the server, a remote attacker can leverage this vulnerability to execute arbitrary code on the server as the SYSTEM account.
Versions prior to 3.8.1 are affected.
SolutionCitrix has released version 3.8.1, which resolves the issue.