Unisys Business Information Server Stack Buffer Overflow
26 Jun. 2009
Summary
Remote exploitation of a stack based buffer overflow vulnerability in Unisys's Business Information Server could allow an attacker to execute arbitrary code with the privileges of the affected service.
Vulnerable Systems:
* Unisys Business Information Server version 10
If attackers send a packet to the Unisys Business Information Server over a TCP port, the attacker can corrupt stack memory and gain arbitrary code execution.
Exploitation of this vulnerability results in the execution of arbitrary code with the privileges of the affected service, usually an administrative account.