Buffer Overflow Vulnerability in ABB IDAL HTTP Server
CVE-2019-7232
8.8HIGH
What is CVE-2019-7232?
The ABB IDAL HTTP server is susceptible to a buffer overflow vulnerability stemming from an excessively long Host header in web requests. When an attacker sends a Host header exceeding 2047 bytes, it can overflow the buffer, leading to the overwriting of a Structured Exception Handler (SEH) address. This exploitation could permit an unauthenticated attacker to run arbitrary code on the server, potentially compromising the system.