CVE-2010-4840

Currently unrated 🤨

Key Information

Status
Eventlog Analyzer
Vendor
CVE Published:
27 September 2011

Summary

Multiple buffer overflows in the Syslog server in ManageEngine EventLog Analyzer 6.1 allow remote attackers to cause a denial of service (SysEvttCol.exe process crash) or possibly execute arbitrary code via a long Syslog PRI message header to UDP port (1) 513 or (2) 514. Fixed in 7.2 Build 7020.

EPSS Score

1% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database
.